-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 23 Jul 2024 15:15:18 +0200 Source: bind9 Binary: bind9 bind9-dbgsym bind9-dev bind9-dnsutils bind9-dnsutils-dbgsym bind9-host bind9-host-dbgsym bind9-libs bind9-libs-dbgsym bind9-utils bind9-utils-dbgsym Architecture: armel Version: 1:9.16.50-1~deb11u1 Distribution: bullseye-security Urgency: high Maintainer: arm Build Daemon (arm-conova-02) Changed-By: Ondřej Surý Description: bind9 - Internet Domain Name Server bind9-dev - Static Libraries and Headers used by BIND 9 bind9-dnsutils - Clients provided with BIND 9 bind9-host - DNS Lookup Utility bind9-libs - Shared Libraries used by BIND 9 bind9-utils - Utilities for BIND 9 Changes: bind9 (1:9.16.50-1~deb11u1) bullseye-security; urgency=high . * Backported from BIND 9.18.28 + CVE-2024-1737: It is possible to craft excessively large resource records sets, which have the effect of slowing down database processing. This has been addressed by adding a fixed limit to the number of records that can be stored per name and type in a cache or zone database. + CVE-2024-1737: It is possible to craft excessively large numbers of resource record types for a given owner name, which has the effect of slowing down database processing. This has been addressed by adding a fixed limit to the number of records that can be stored per name and type in a cache or zone database. + CVE-2024-1975: Validating DNS messages signed using the SIG(0) protocol could cause excessive CPU load, leading to a denial-of-service condition. Support for SIG(0) message validation was removed from this version. + CVE-2024-4076: Due to a logic error, lookups that triggered serving stale data and required lookups in local authoritative zone data could have resulted in an assertion failure. Checksums-Sha1: d66dc5674e3fce35a250654f3c2acee5040bc247 494160 bind9-dbgsym_9.16.50-1~deb11u1_armel.deb 2eee0b68207601d8dad731febd48389d3493a5d7 1702012 bind9-dev_9.16.50-1~deb11u1_armel.deb ecc87be6aac4cfd739599c0f804b53183077fa26 276752 bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_armel.deb 6f7e8b28aa74956f61df65ad8e950b1f4dd69726 401300 bind9-dnsutils_9.16.50-1~deb11u1_armel.deb 314a22974ce720436c2cfc6e8e43ff20675af227 77872 bind9-host-dbgsym_9.16.50-1~deb11u1_armel.deb 35dbd3e5be4cde0baa7180ce9dd4cd5c4d81ba4e 309208 bind9-host_9.16.50-1~deb11u1_armel.deb 369f2cd48088349af9e28b7a9b1d59ae929e7fd7 3239644 bind9-libs-dbgsym_9.16.50-1~deb11u1_armel.deb 988fb8338c85705d0425c3c72f00d0582f42fa7c 1280448 bind9-libs_9.16.50-1~deb11u1_armel.deb 058bd207ce12786393e41ae8f75cf763d4438d48 257196 bind9-utils-dbgsym_9.16.50-1~deb11u1_armel.deb 095d0a9fb6c570a2e03bd5dd92b1c4f93c973abd 431032 bind9-utils_9.16.50-1~deb11u1_armel.deb 80b70a927bf61f8e91be3cc41adba6ec528fbc02 10853 bind9_9.16.50-1~deb11u1_armel-buildd.buildinfo 896b4bfc905dbaa38bb56cea9e18b44033e564c8 485788 bind9_9.16.50-1~deb11u1_armel.deb Checksums-Sha256: 9b8f39e1a24f3b2391cdcfcbb3da40971587de2fa5b3979593954dc2bdb61bf2 494160 bind9-dbgsym_9.16.50-1~deb11u1_armel.deb da4b2bdafb2f1129165531edfc028f9f49975205eaecb3a5fe8f4eb3cc2f3022 1702012 bind9-dev_9.16.50-1~deb11u1_armel.deb db2beb4d267f8a89adb219998c1229d17d65e5fb2573aef6a39e6410091585aa 276752 bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_armel.deb c3c379000dbb1dfd912e9f852944d414b0f4269f1eecca8d97e40452b02dc923 401300 bind9-dnsutils_9.16.50-1~deb11u1_armel.deb ea23c6305b23b8be8ce965acc42779f3755cbd61a8868157cfaa5ceef9aa09bb 77872 bind9-host-dbgsym_9.16.50-1~deb11u1_armel.deb 0c9f6179aba791095dcc4a0acdd157179f78a2e214ad8e51d1f369b5bd308b85 309208 bind9-host_9.16.50-1~deb11u1_armel.deb d8c40c77fb301b904d791577fed8cc185aea3f90057edb3ef0b73d35bbf3e71f 3239644 bind9-libs-dbgsym_9.16.50-1~deb11u1_armel.deb 90b112ae80fe2ae993a91ae9b93da8bcdb98c3f6f7289a3e0d7d2fbcacf64d68 1280448 bind9-libs_9.16.50-1~deb11u1_armel.deb b18791e30307dfc8bfaeb527bcccf9151dadd1acc1eb21b258eadb654849b565 257196 bind9-utils-dbgsym_9.16.50-1~deb11u1_armel.deb aa3e13fb04e5d11343d544f4e944fd04e5293e6208bf5f489608dd1491bac3e0 431032 bind9-utils_9.16.50-1~deb11u1_armel.deb d9fbfaab2158dab160ad73e5f507fef3a9db9d5235eb07c969f6686e32759cc6 10853 bind9_9.16.50-1~deb11u1_armel-buildd.buildinfo bf840f8b4af9b830bd2e5d0e60c21199436bb855763abae5a6180b32de26d14a 485788 bind9_9.16.50-1~deb11u1_armel.deb Files: a6e74cfa77630ab12535a8a9a2bd088d 494160 debug optional bind9-dbgsym_9.16.50-1~deb11u1_armel.deb 863ec3d49868425c3b6ab028258c96c4 1702012 devel optional bind9-dev_9.16.50-1~deb11u1_armel.deb 7dad6f92da7222379e34f60cb6eb9df5 276752 debug optional bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_armel.deb 3ae5e7ba9d0038c37143b5666ebc99a7 401300 net standard bind9-dnsutils_9.16.50-1~deb11u1_armel.deb fcb76404a3e5e2d7aadedd9dfa87f649 77872 debug optional bind9-host-dbgsym_9.16.50-1~deb11u1_armel.deb 4a7d342bd9e84445322ed0bb616c1345 309208 net standard bind9-host_9.16.50-1~deb11u1_armel.deb 65907eb57ea93c29b3cecb353780ac45 3239644 debug optional bind9-libs-dbgsym_9.16.50-1~deb11u1_armel.deb e1bc30d2be3cf92e791e417c4027c6f1 1280448 libs standard bind9-libs_9.16.50-1~deb11u1_armel.deb 7e4a2aa854eddffbf721d5fd906a1690 257196 debug optional bind9-utils-dbgsym_9.16.50-1~deb11u1_armel.deb 759aac9fe485d238ae796f2123b2de83 431032 net optional bind9-utils_9.16.50-1~deb11u1_armel.deb 00127c8f737aeaccc5481cd80bfbef62 10853 net optional bind9_9.16.50-1~deb11u1_armel-buildd.buildinfo 2004c5207a670656b80bb39cf9f35d43 485788 net optional bind9_9.16.50-1~deb11u1_armel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEKAzExpjGvTI78ZO8LARVyvnD3xkFAmaf8RQACgkQLARVyvnD 3xkTng//XsQR2diMEOiQgMWcfi99ohvYy1+3mtLfB7OecCGQGRxK0ByYwRTVATVH iNYufgZoX8Kd1VTU0qhRr97qeUFOYcwAYBwONz+ctQRFRDDIPIa71scIWPaL1yat gKCF2M/glkwZkLERsENIgGEspO+8fqhuaMDn8ljDgvaX1qnCLiETM3zib4pHnKSy UCdf0GB7A3yf9WUpbxHONyCy8PsFC87MUZwU2oeVksQALbFp067stz0oLeLpAk06 tF+R69S9LnBBbYWsTBz1/bVYLmPlGnGdrCnt3VMQCzkqVJJ0t+k6M1R0c0lZXkcS zH8Ra18nmgDEtq688+NGKiCcjkJI7ChEhfLdx778FYp0iRDc16q/R3AqIpd3m/62 GRFpBps8vX3q6lrC2B4pSr0MEhVtLhfqmKfJSJ4XyqwnztUYM94aFIYp/IjLhvks VXBDyRCgJj2Xg+toZ3rAQed/NBpyaiYXkvYkZFR0An8SJGRhGXryrJS4KT7NvXW+ PFd2igvKussV8gfH13hgBb9VqN9aw6bv3MnfIjXub5KU4ECSXD4BQ2YCVFjz19o1 WdivYpDr1KsOkUk7o4VYNys67kr5ptWyPRGsg2WnBc3qRTVwOuAyagX4k24K+TVv octDl3gMAChxYMoUzQ7F9UNAx0RGma3R2IkbyqAZ9ccTDgd2oYY= =CXkb -----END PGP SIGNATURE-----