Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 25 Jan 2007 01:57:42 +0000 (UTC)
From:      Doug Barton <dougb@FreeBSD.org>
To:        ports-committers@FreeBSD.org, cvs-ports@FreeBSD.org, cvs-all@FreeBSD.org
Subject:   cvs commit: ports/dns/bind9 Makefile distinfo
Message-ID:  <200701250157.l0P1vhZK060756@repoman.freebsd.org>

next in thread | raw e-mail | index | archive | help
dougb       2007-01-25 01:57:42 UTC

  FreeBSD ports repository

  Modified files:
    dns/bind9            Makefile distinfo 
  Log:
  Upgrade to version 9.3.4, the latest from ISC, which addresses the
  following security issues. All users of BIND are encouraged to upgrade
  to this version.
  
  2126.   [security]      Serialise validation of type ANY responses. [RT #16555]
  
  2124.   [security]      It was possible to dereference a freed fetch
                          context. [RT #16584]
  
  2089.   [security]      Raise the minimum safe OpenSSL versions to
                          OpenSSL 0.9.7l and OpenSSL 0.9.8d.  Versions
                          prior to these have known security flaws which
                          are (potentially) exploitable in named. [RT #16391]
  
  2088.   [security]      Change the default RSA exponent from 3 to 65537.
                          [RT #16391]
  
  2066.   [security]      Handle SIG queries gracefully. [RT #16300]
  
  1941.   [bug]           ncache_adderesult() should set eresult even if no
                          rdataset is passed to it. [RT #15642]
  
  Revision  Changes    Path
  1.75      +2 -2      ports/dns/bind9/Makefile
  1.41      +6 -6      ports/dns/bind9/distinfo



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200701250157.l0P1vhZK060756>