24da4f54fa
- Update to version 9.10.1-P1 - A flaw in delegation handling could be exploited to put named into an infinite loop. This has been addressed by placing limits on the number of levels of recursion named will allow (default 7), and the number of iterative queries that it will send (default 50) before terminating a recursive query (CVE-2014-8500); (bnc#908994). The recursion depth limit is configured via the "max-recursion-depth" option, and the query limit via the "max-recursion-queries" option. [RT #37580] - When geoip-directory was reconfigured during named run-time, the previously loaded GeoIP data could remain, potentially causing wrong ACLs to be used or wrong results to be served based on geolocation (CVE-2014-8680). [RT #37720]; (bnc#908995). - Lookups in GeoIP databases that were not loaded could cause an assertion failure (CVE-2014-8680). [RT #37679]; (bnc#908995). - The caching of GeoIP lookups did not always handle address families correctly, potentially resulting in an assertion failure (CVE-2014-8680). [RT #37672]; (bnc#908995). OBS-URL: https://build.opensuse.org/request/show/264596 OBS-URL: https://build.opensuse.org/package/show/network/bind?expand=0&rev=156 |
||
---|---|---|
.gitattributes | ||
.gitignore | ||
baselibs.conf | ||
bind-9.10.1-P1.tar.gz | ||
bind-9.10.1-P1.tar.gz.asc | ||
bind-sdb-ldap.patch | ||
bind.changes | ||
bind.keyring | ||
bind.spec | ||
configure.in.diff | ||
configure.in.diff2 | ||
dlz-schema.txt | ||
dnszone-schema.txt | ||
Makefile.in.diff | ||
named-bootconf.diff | ||
named.root | ||
perl-path.diff | ||
pie_compile.diff | ||
runidn.diff | ||
vendor-files.tar.bz2 |