Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 27 May 2011 23:47:39 +0000 (UTC)
From:      Doug Barton <dougb@FreeBSD.org>
To:        ports-committers@FreeBSD.org, cvs-ports@FreeBSD.org, cvs-all@FreeBSD.org
Subject:   cvs commit: ports/dns/bind96 Makefile distinfo ports/dns/bind96/files patch-bin__nsupdate__nsupdate.c ports/dns/bind97 Makefile distinfo ports/dns/bind97/files patch-bin__nsupdate__nsupdate.c
Message-ID:  <201105272347.p4RNldR0036812@repoman.freebsd.org>

next in thread | raw e-mail | index | archive | help
dougb       2011-05-27 23:47:39 UTC

  FreeBSD ports repository

  Modified files:
    dns/bind96           Makefile distinfo 
    dns/bind97           Makefile distinfo 
  Added files:
    dns/bind96/files     patch-bin__nsupdate__nsupdate.c 
    dns/bind97/files     patch-bin__nsupdate__nsupdate.c 
  Log:
  Upgrade to 9.6-ESV-R4-P1 and 9.7.3-P1, which address the following issues:
  
  1. Very large RRSIG RRsets included in a negative cache can trigger
  an assertion failure that will crash named (BIND 9 DNS) due to an
  off-by-one error in a buffer size check.
  
  This bug affects all resolving name servers, whether DNSSEC validation
  is enabled or not, on all BIND versions prior to today. There is a
  possibility of malicious exploitation of this bug by remote users.
  
  2. Named could fail to validate zones listed in a DLV that validated
  insecure without using DLV and had DS records in the parent zone.
  
  Add a patch provided by ru@ and confirmed by ISC to fix a crash at
  shutdown time when a SIG(0) key is being used.
  
  Revision  Changes    Path
  1.115     +2 -2      ports/dns/bind96/Makefile
  1.67      +4 -4      ports/dns/bind96/distinfo
  1.1       +14 -0     ports/dns/bind96/files/patch-bin__nsupdate__nsupdate.c (new)
  1.16      +1 -1      ports/dns/bind97/Makefile
  1.13      +4 -4      ports/dns/bind97/distinfo
  1.1       +14 -0     ports/dns/bind97/files/patch-bin__nsupdate__nsupdate.c (new)



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?201105272347.p4RNldR0036812>