-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 23 Jul 2024 15:15:18 +0200 Source: bind9 Binary: bind9 bind9-dbgsym bind9-dev bind9-dnsutils bind9-dnsutils-dbgsym bind9-host bind9-host-dbgsym bind9-libs bind9-libs-dbgsym bind9-utils bind9-utils-dbgsym Architecture: s390x Version: 1:9.16.50-1~deb11u1 Distribution: bullseye-security Urgency: high Maintainer: s390x Build Daemon (zani) Changed-By: Ondřej Surý Description: bind9 - Internet Domain Name Server bind9-dev - Static Libraries and Headers used by BIND 9 bind9-dnsutils - Clients provided with BIND 9 bind9-host - DNS Lookup Utility bind9-libs - Shared Libraries used by BIND 9 bind9-utils - Utilities for BIND 9 Changes: bind9 (1:9.16.50-1~deb11u1) bullseye-security; urgency=high . * Backported from BIND 9.18.28 + CVE-2024-1737: It is possible to craft excessively large resource records sets, which have the effect of slowing down database processing. This has been addressed by adding a fixed limit to the number of records that can be stored per name and type in a cache or zone database. + CVE-2024-1737: It is possible to craft excessively large numbers of resource record types for a given owner name, which has the effect of slowing down database processing. This has been addressed by adding a fixed limit to the number of records that can be stored per name and type in a cache or zone database. + CVE-2024-1975: Validating DNS messages signed using the SIG(0) protocol could cause excessive CPU load, leading to a denial-of-service condition. Support for SIG(0) message validation was removed from this version. + CVE-2024-4076: Due to a logic error, lookups that triggered serving stale data and required lookups in local authoritative zone data could have resulted in an assertion failure. Checksums-Sha1: a9d96e8df412a61f814d5c12deb4c5a859f93e07 520180 bind9-dbgsym_9.16.50-1~deb11u1_s390x.deb 90f5db21aef49b68b88b00da3fb95be46095910e 1693796 bind9-dev_9.16.50-1~deb11u1_s390x.deb b8eef5012f063f8616efb61d6dfa69979d00162f 286628 bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_s390x.deb 4170f0b58fd44d394684a71ae50038849da5bf23 398964 bind9-dnsutils_9.16.50-1~deb11u1_s390x.deb aa07db21c7a26a769790b2654cab74c24691d7ff 81588 bind9-host-dbgsym_9.16.50-1~deb11u1_s390x.deb f535506c91f60cadf7b8bb2a1539f4c2623c2c82 309224 bind9-host_9.16.50-1~deb11u1_s390x.deb b620232ed318d1d4e2e0ced20facf6e4deaee405 3510504 bind9-libs-dbgsym_9.16.50-1~deb11u1_s390x.deb 299bbc9116e6d58437dd09e9d1ae235dae84896e 1295032 bind9-libs_9.16.50-1~deb11u1_s390x.deb af776940f195f35c0f3c17bc8c62d60f342e8564 263864 bind9-utils-dbgsym_9.16.50-1~deb11u1_s390x.deb defa3d76fea8e650195708f86c62e74f88c1cc83 431892 bind9-utils_9.16.50-1~deb11u1_s390x.deb 0bbbcb7dec93172bdeb6c784656b23f9cbd4e524 10890 bind9_9.16.50-1~deb11u1_s390x-buildd.buildinfo 8d6d1654eca65ad67b1a2d9525c9b8aef8437b14 480996 bind9_9.16.50-1~deb11u1_s390x.deb Checksums-Sha256: 0eee9aa67be1b509ae86626c92a09fdb6f76d283cebace6158c79ef3befdbf78 520180 bind9-dbgsym_9.16.50-1~deb11u1_s390x.deb 54804acfdb2a61f2d9acdf1184e2c442ea4370ac54a4d040dbf75fe0f6625a8a 1693796 bind9-dev_9.16.50-1~deb11u1_s390x.deb 7be896f1de847f7f2e4f29dff3637cbc33c63c6fb796efba5533c7319da5910d 286628 bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_s390x.deb f0219ec9fe5087d6f2be3d4f3002474ff35f834468c3d2925f9e81e3c7736030 398964 bind9-dnsutils_9.16.50-1~deb11u1_s390x.deb 6106b7802db1dc01636176c0a070be091692fb99179118c2ed9f0106624321ad 81588 bind9-host-dbgsym_9.16.50-1~deb11u1_s390x.deb ce4aff827cd0efc96c1e253bdc9127b79fecf1112b1aca07e032b4cc0e28d0a5 309224 bind9-host_9.16.50-1~deb11u1_s390x.deb d0f77d90803d951e4394a4185c24a78a1a466835cf64ad67a630dbe9008df998 3510504 bind9-libs-dbgsym_9.16.50-1~deb11u1_s390x.deb 611b677d102605ea68ae23876d09978297e36b3ed9a5dc078ee666c6721d35de 1295032 bind9-libs_9.16.50-1~deb11u1_s390x.deb 8264cdc932bc5dded4bd03da9a446119a0e12061313362e317c226ab00963208 263864 bind9-utils-dbgsym_9.16.50-1~deb11u1_s390x.deb f0e7972184d10183633013fe6e9571b810762746b1650744cb7ff35eba539f10 431892 bind9-utils_9.16.50-1~deb11u1_s390x.deb 4c5a6462e15db9ece72d8e863b91a7698409d17df95b7ea86259716202688534 10890 bind9_9.16.50-1~deb11u1_s390x-buildd.buildinfo 6c4ff366d0fc159eedce2cf247cbbb7ad698ce54c3c690c0daed54ec2bdd7892 480996 bind9_9.16.50-1~deb11u1_s390x.deb Files: 928d78dc321cbbc4e4f0679c427ee275 520180 debug optional bind9-dbgsym_9.16.50-1~deb11u1_s390x.deb fa990f1057074c9946bfe88da3c562a2 1693796 devel optional bind9-dev_9.16.50-1~deb11u1_s390x.deb 5d93b3f249032f88ad076d5c536896fc 286628 debug optional bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_s390x.deb 84889d70570f1921320d072de234aff5 398964 net standard bind9-dnsutils_9.16.50-1~deb11u1_s390x.deb 300f338718e4ac460830e28b5d86306f 81588 debug optional bind9-host-dbgsym_9.16.50-1~deb11u1_s390x.deb 1bd2cb409905b2e597d92c5c357010d6 309224 net standard bind9-host_9.16.50-1~deb11u1_s390x.deb 859669b3284acc84649de8bd82026322 3510504 debug optional bind9-libs-dbgsym_9.16.50-1~deb11u1_s390x.deb c0e5e80fa43a633e025e7572e55b1e99 1295032 libs standard bind9-libs_9.16.50-1~deb11u1_s390x.deb 29a9579970553e44bbe00faea9e96fba 263864 debug optional bind9-utils-dbgsym_9.16.50-1~deb11u1_s390x.deb d0e20a3071b7d2ab3efedcaa9d949d77 431892 net optional bind9-utils_9.16.50-1~deb11u1_s390x.deb 155a6ca8aaea4d645c73b5baf11d5d01 10890 net optional bind9_9.16.50-1~deb11u1_s390x-buildd.buildinfo 42754ec86d2eceee1b7afc761e91dfc9 480996 net optional bind9_9.16.50-1~deb11u1_s390x.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEETdQgQHyJW2hcXsTC6b+AMjGgQHgFAmagBkUACgkQ6b+AMjGg QHjzig/+IZubJhpkEdem6u4ZeMlbvbsUw9OowbBnaNVNOqyUjJvDBQbo8rmUhNrc vne/YuIqxTkAHNZSFOeMEsZCFDu6aBwyrKmfPSkzaiNBGAwiqM73Jq7EphRtYCL6 q3zUQUJg7DzYV09zcuusWue6LFkrPa6zUSIWuPsKm8kX4Nlvpl7Wty74Jf0FHQGV FUf1SNt3cmVnAAjvE7PufKKtVCSKwEST0aXf6H72DzKWTk9H3phDgJIOkREg7JNx pC9AMNoC5Lr+AskCpjCyv3gOv2t1fijzgEROJzyowouKjEJ4YmgFGQYLA9uzABGF N3t6JPZvKW5f6RPoKE5ZQbtA42T2CHi4wd6abzOcL4+dlv3V3erun28FG1RcLZYn gAv3KkoOuF/ShPqO0V9ROiaaeC6FmdOkpaIGUuJpgatNlJdQqtMWj/eKkyk0EGpj ugnszU6wamzLyCjEUAN+Zlndh+mxcZutnhaoS4jdjHoGJLjH5gqhWbpKoGBaIPyZ XhCGWCNEA7crTnehMKvCGOBS/Ke3l+o2iSrFmit2xCnFONBNs9lF6RHZmYvkTgNf gLqY5a7ZPjl7qcenyMMcl1B/h8qgFSohWDNR8dVvwed8z/ndmE13I8HV0GF2opmk u8FGw7iWq7XVp90Dv93GrvG24DZUNbbJhhvTqHtNFhUxZiPeKcY= =nQOI -----END PGP SIGNATURE-----