-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 23 Jul 2024 15:15:18 +0200 Source: bind9 Binary: bind9 bind9-dbgsym bind9-dev bind9-dnsutils bind9-dnsutils-dbgsym bind9-host bind9-host-dbgsym bind9-libs bind9-libs-dbgsym bind9-utils bind9-utils-dbgsym Architecture: mipsel Version: 1:9.16.50-1~deb11u1 Distribution: bullseye-security Urgency: high Maintainer: mipsel Build Daemon (mipsel-osuosl-05) Changed-By: Ondřej Surý Description: bind9 - Internet Domain Name Server bind9-dev - Static Libraries and Headers used by BIND 9 bind9-dnsutils - Clients provided with BIND 9 bind9-host - DNS Lookup Utility bind9-libs - Shared Libraries used by BIND 9 bind9-utils - Utilities for BIND 9 Changes: bind9 (1:9.16.50-1~deb11u1) bullseye-security; urgency=high . * Backported from BIND 9.18.28 + CVE-2024-1737: It is possible to craft excessively large resource records sets, which have the effect of slowing down database processing. This has been addressed by adding a fixed limit to the number of records that can be stored per name and type in a cache or zone database. + CVE-2024-1737: It is possible to craft excessively large numbers of resource record types for a given owner name, which has the effect of slowing down database processing. This has been addressed by adding a fixed limit to the number of records that can be stored per name and type in a cache or zone database. + CVE-2024-1975: Validating DNS messages signed using the SIG(0) protocol could cause excessive CPU load, leading to a denial-of-service condition. Support for SIG(0) message validation was removed from this version. + CVE-2024-4076: Due to a logic error, lookups that triggered serving stale data and required lookups in local authoritative zone data could have resulted in an assertion failure. Checksums-Sha1: cc7930314f5afe86858ef3f048211fcae718bbdb 489012 bind9-dbgsym_9.16.50-1~deb11u1_mipsel.deb dfcebabb5ef5f697bd112a57b7f69eab16fc0fb7 1925740 bind9-dev_9.16.50-1~deb11u1_mipsel.deb 4dcb71706f53fcffd370d5d3577f3208c490a9be 279880 bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_mipsel.deb f2ee7cc4fec7e3f74b70968ed0ae9c5b26c51983 399092 bind9-dnsutils_9.16.50-1~deb11u1_mipsel.deb 46d03d0b66a9ab52fb5151369e6d1d9b4a6ba7ad 77240 bind9-host-dbgsym_9.16.50-1~deb11u1_mipsel.deb 0f4557d0f211b36115bdf26ba72a9a43e228f3bb 308036 bind9-host_9.16.50-1~deb11u1_mipsel.deb 1d67b84c0537357e988df509aded8a8354cf0322 3304000 bind9-libs-dbgsym_9.16.50-1~deb11u1_mipsel.deb a3fee8c4af24e3e008bb59ffc8cc1abe72fb6cc8 1223796 bind9-libs_9.16.50-1~deb11u1_mipsel.deb 62880c3a7d6fbbb88eb59b8abaf830ae6d424af9 260880 bind9-utils-dbgsym_9.16.50-1~deb11u1_mipsel.deb 0ea7ef149b16e56c469c2a3a9e78cc1add5a6bb6 432804 bind9-utils_9.16.50-1~deb11u1_mipsel.deb 9def227cd5cf33edb17a840fd315f6b30138b8a3 10838 bind9_9.16.50-1~deb11u1_mipsel-buildd.buildinfo ae3f3d8165c54ed725f9c23218372b419a4bab43 478552 bind9_9.16.50-1~deb11u1_mipsel.deb Checksums-Sha256: 974a1813f20c059169542fc3b190f800b028046763c621acdea911b2a88fd3a1 489012 bind9-dbgsym_9.16.50-1~deb11u1_mipsel.deb 981eabb1677b6ca2f8929dc96d353d0cfb08c0e050439444289254fa423986d8 1925740 bind9-dev_9.16.50-1~deb11u1_mipsel.deb 2c37db2ebb1ba7942491e28c425962df38b5670597cb9926346e05b45d44543c 279880 bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_mipsel.deb ea9b17a4552aa3134d0179a562b737654c34f82e6d4562fb06d296378f62b19f 399092 bind9-dnsutils_9.16.50-1~deb11u1_mipsel.deb 80fdd7cfacd661bec2c5174efe456eea2f480e4b16f7d4e545f123f419fa9198 77240 bind9-host-dbgsym_9.16.50-1~deb11u1_mipsel.deb 17a1d4dfc308cf69dce29af4b4a4080e155188cb7ccbf79f4698ad63dc30ef3c 308036 bind9-host_9.16.50-1~deb11u1_mipsel.deb a8c99f29b8ae2f77d0be861c3fbf935e3e9f954d519626a639002b50d0ac3bff 3304000 bind9-libs-dbgsym_9.16.50-1~deb11u1_mipsel.deb 8fdda42ec363c6b9f56e639df6954e92ce43f9787fc42fc255c8de785f2c84da 1223796 bind9-libs_9.16.50-1~deb11u1_mipsel.deb 6d8db69551a3a585f220db403d5fe406af3bfd09f6dcdec7d12a807630f1b40d 260880 bind9-utils-dbgsym_9.16.50-1~deb11u1_mipsel.deb 036148a27bc4863a29cf61b17a6b6b8fb10ac411e0e68c6011719b8373c53ecb 432804 bind9-utils_9.16.50-1~deb11u1_mipsel.deb 7e973d17968e2d6295bc35972a706895672bf7fc6a9566364abd9e61ca1d66dd 10838 bind9_9.16.50-1~deb11u1_mipsel-buildd.buildinfo 6be0c662847292f60b30efe3708f8cd25debb842bdbf407b9d1cf2702d41becf 478552 bind9_9.16.50-1~deb11u1_mipsel.deb Files: 52e80e1bfb8d7d93705297a54b625103 489012 debug optional bind9-dbgsym_9.16.50-1~deb11u1_mipsel.deb 1f348f24aea184ae2c9fdf4299f3454d 1925740 devel optional bind9-dev_9.16.50-1~deb11u1_mipsel.deb d38b7cee8bd4d0aa247c1b206f5c67d0 279880 debug optional bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_mipsel.deb 46f015a6069b89021c6fbcd256f44d28 399092 net standard bind9-dnsutils_9.16.50-1~deb11u1_mipsel.deb c461e074f7094fc6deac4cab261e8b63 77240 debug optional bind9-host-dbgsym_9.16.50-1~deb11u1_mipsel.deb fa21c0041c707c7a57028dfc685a6cb5 308036 net standard bind9-host_9.16.50-1~deb11u1_mipsel.deb f5bc2d093c61d9d4095ae727a2c0b89e 3304000 debug optional bind9-libs-dbgsym_9.16.50-1~deb11u1_mipsel.deb de90613b0384779d7f9ad1fcde5acde9 1223796 libs standard bind9-libs_9.16.50-1~deb11u1_mipsel.deb 44a9642a12b28e8adb60d8a09de57c83 260880 debug optional bind9-utils-dbgsym_9.16.50-1~deb11u1_mipsel.deb 7c559b517e82fd319c96565f0a6fdcbb 432804 net optional bind9-utils_9.16.50-1~deb11u1_mipsel.deb 17706719318d72377dabbf7813ae2770 10838 net optional bind9_9.16.50-1~deb11u1_mipsel-buildd.buildinfo 61b6b91fb3be9828f508f1932b60835b 478552 net optional bind9_9.16.50-1~deb11u1_mipsel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEuQAPGkYIXAAfq7z1C2Vm2FYVKKAFAmaf8oMACgkQC2Vm2FYV KKBdwA//VTzH8k8tr+DVQsOZi90Tt/p1UYnNPsBw44yxQmw4WsC5nUu7BL/kGXO1 r0M8kjt8KcZs2u/qIx2XFn8V62hlHkUu5Cw5I5mX3TLttd1n1XTTJdHi5/tb/NS9 bIBoDpvKn4+/rjwotL43fXLOmxZuBH8fcankm/cw6JoU0xig5SnbWXA1Lf7rAYPI iyHN0N3sPCgaWPuHso8LI+F/U8XEwGQqefVHVqXocaABBCc4fz39R15iGusUKOGG +H/4Ie9fNRRZsk9naHMCczGNYfM4CU6yvh4l3KdVDer/T4CAwyRcskgEFOvMAdYL Cu9xR2l8/LRgtd0RQFqUorBuICIlT79dmAdGxfONlRHxKd6tOy9uJ7hV8yug316V 94fQmFfz0a07Hm+LZHPqo5/VD5WHLrFpYEiLC1cluzXKde6APRm+ixUBvUN1POOP l0ji2PB7WAbZDZr8MY8TXKJOgCexq2ANx3JDh4g9ApUvxiwtzwkaVFN//mmYtcWV GU043zUP+6wDQPVvfZf24f6VrO902nv49PEq8dc5LH5ZTTVHiPqIiMpgArvslAm2 YK9+32FJnTdy9sJv3Ia/GpF90lzOnT/l2rwU0LuBNQXpE0q/7ucdA+GVpCTBvbL5 jldMSGhdE45CBU7ENTKYDZ1xfhWAadxb3iOYOpyfDvNugHlAJzc= =Omqi -----END PGP SIGNATURE-----