-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 23 Jul 2024 15:15:18 +0200 Source: bind9 Binary: bind9 bind9-dbgsym bind9-dev bind9-dnsutils bind9-dnsutils-dbgsym bind9-host bind9-host-dbgsym bind9-libs bind9-libs-dbgsym bind9-utils bind9-utils-dbgsym Architecture: armhf Version: 1:9.16.50-1~deb11u1 Distribution: bullseye-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-04) Changed-By: Ondřej Surý Description: bind9 - Internet Domain Name Server bind9-dev - Static Libraries and Headers used by BIND 9 bind9-dnsutils - Clients provided with BIND 9 bind9-host - DNS Lookup Utility bind9-libs - Shared Libraries used by BIND 9 bind9-utils - Utilities for BIND 9 Changes: bind9 (1:9.16.50-1~deb11u1) bullseye-security; urgency=high . * Backported from BIND 9.18.28 + CVE-2024-1737: It is possible to craft excessively large resource records sets, which have the effect of slowing down database processing. This has been addressed by adding a fixed limit to the number of records that can be stored per name and type in a cache or zone database. + CVE-2024-1737: It is possible to craft excessively large numbers of resource record types for a given owner name, which has the effect of slowing down database processing. This has been addressed by adding a fixed limit to the number of records that can be stored per name and type in a cache or zone database. + CVE-2024-1975: Validating DNS messages signed using the SIG(0) protocol could cause excessive CPU load, leading to a denial-of-service condition. Support for SIG(0) message validation was removed from this version. + CVE-2024-4076: Due to a logic error, lookups that triggered serving stale data and required lookups in local authoritative zone data could have resulted in an assertion failure. Checksums-Sha1: 4dbbc91af6be6fb193cb59424c6422786503a1d4 503832 bind9-dbgsym_9.16.50-1~deb11u1_armhf.deb 92ff066f2f4de6e0657a064c7507bc1660d0b952 1730152 bind9-dev_9.16.50-1~deb11u1_armhf.deb a721a6ed6103260f8e82a1f1d1aff24972ae67e8 280100 bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_armhf.deb 53f6f5e4b3d1b5035a1118a4e0bd8e28c0e33251 403332 bind9-dnsutils_9.16.50-1~deb11u1_armhf.deb 72aec67e0260c70cf995eedec5d3e9a3182f5aaa 79012 bind9-host-dbgsym_9.16.50-1~deb11u1_armhf.deb 3bcb70d8bf3e1b1d2219ea3c1fa36b2cc9a7b578 309708 bind9-host_9.16.50-1~deb11u1_armhf.deb f90a80dfdf2b2b5a79b6632d4c8af5b2ee36824a 3297948 bind9-libs-dbgsym_9.16.50-1~deb11u1_armhf.deb 1083bf9ad284dddef0717ae61e50dda1717574d1 1312580 bind9-libs_9.16.50-1~deb11u1_armhf.deb cabe98ad6958718a1c99c19b2b95b1823fee83c6 260152 bind9-utils-dbgsym_9.16.50-1~deb11u1_armhf.deb 6c2037641a5f7bbbc4e32c9701ede08df7704540 433540 bind9-utils_9.16.50-1~deb11u1_armhf.deb aa034d62db6272771aafc3d5386a236866eb1ca6 10855 bind9_9.16.50-1~deb11u1_armhf-buildd.buildinfo 5064f5836e7985a2c74d571aeb0891045b1e822a 488992 bind9_9.16.50-1~deb11u1_armhf.deb Checksums-Sha256: 9c0ca03ffa269b860764f1877c593fc4ffee160dc363136a89233ad166cdebf0 503832 bind9-dbgsym_9.16.50-1~deb11u1_armhf.deb dc8ed29549a81d2b4ada13932f320351dca6dcfbaed8f714eccb319035d9d250 1730152 bind9-dev_9.16.50-1~deb11u1_armhf.deb 10b14a7fd651f990c46ff636bda5674dfb6aaeac4e0e898153f0102a45e27a53 280100 bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_armhf.deb be4d9763a30ceb498d6d0a2eb30f445d2ff66b051da469ab0d06eca8e6e315e1 403332 bind9-dnsutils_9.16.50-1~deb11u1_armhf.deb 539341a09ab2ac787f25be2069a911f4aa7f2a422fc6e16c8ab02ce05b352638 79012 bind9-host-dbgsym_9.16.50-1~deb11u1_armhf.deb 41e2ce5b99f6d6592e1944229a696f1f4ed75b1fad2db43086ac9701f4eca538 309708 bind9-host_9.16.50-1~deb11u1_armhf.deb cfe171d6e2e25a9b00a7c3d15a90cd1e90875bc2e04cb29c7ccf55bdcebe1811 3297948 bind9-libs-dbgsym_9.16.50-1~deb11u1_armhf.deb cec6b3db9085ef396ae7480ffffc6d90a2e4d42a05f637be7af0769323be564b 1312580 bind9-libs_9.16.50-1~deb11u1_armhf.deb 32632e24039c297a347713441594656f9aa5a314eed10983bd29d6d7e559b2a3 260152 bind9-utils-dbgsym_9.16.50-1~deb11u1_armhf.deb 8fab97e2d6701e4edf05f7d8bc9688b2c749a3dce15e59cee58a7970fcfe78a9 433540 bind9-utils_9.16.50-1~deb11u1_armhf.deb c0e3174ce6fdbfe15baf44c954cc1f54a935f62c3a9365a3be875ac80e8c0631 10855 bind9_9.16.50-1~deb11u1_armhf-buildd.buildinfo 8a9224761c2b84529ccc4b0a25b6bf1eb4b1ded3ccb3a29bc26563077f7c8a78 488992 bind9_9.16.50-1~deb11u1_armhf.deb Files: 2ff9b315c5fd29a7196626f0f506b7d5 503832 debug optional bind9-dbgsym_9.16.50-1~deb11u1_armhf.deb 0f436de7df62c551afb72592e9b538d2 1730152 devel optional bind9-dev_9.16.50-1~deb11u1_armhf.deb 0230431229871e4c350d14c4dbf43567 280100 debug optional bind9-dnsutils-dbgsym_9.16.50-1~deb11u1_armhf.deb 831f3c973105d8531d4679afb07dbde0 403332 net standard bind9-dnsutils_9.16.50-1~deb11u1_armhf.deb 34c46376dba7662dacc3d0cf8b81ea70 79012 debug optional bind9-host-dbgsym_9.16.50-1~deb11u1_armhf.deb 299d4806fa58644eb37b73458d7dd302 309708 net standard bind9-host_9.16.50-1~deb11u1_armhf.deb 741a0d32aec81c7d6976b175a57b5b9e 3297948 debug optional bind9-libs-dbgsym_9.16.50-1~deb11u1_armhf.deb 47cc76a845c445923ecb413ea11cfb67 1312580 libs standard bind9-libs_9.16.50-1~deb11u1_armhf.deb 46f9af2c8215fed687c1898437fddeac 260152 debug optional bind9-utils-dbgsym_9.16.50-1~deb11u1_armhf.deb f1fbb408a24359e3a07245168a02fa1f 433540 net optional bind9-utils_9.16.50-1~deb11u1_armhf.deb 92496f8b03f57eb24bbe72aa49346c09 10855 net optional bind9_9.16.50-1~deb11u1_armhf-buildd.buildinfo 3eac7781cd5e331aea36efa259326e66 488992 net optional bind9_9.16.50-1~deb11u1_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE6s8UzO+WAx8RRAOV80lOEvgzuSsFAmaf88MACgkQ80lOEvgz uSsHmg/9Ef2svac8VeIgt+vlBgSVQbK7coZ2Oq5kmb7tS7X09nV9VAXIVC/I8Zem Rg8DH+YEy7XB3kKcfOee+rIZpDmMrAe3Hvm/PB9H6DH1B+MKgPEeDgSmG4Hy54kh 7eXoI4IYJ34C0/904QkgwLIPxfXRR2Capckeia+0NmKu8LlKIZvQt+lcBa15CVOw 8Blnv3CRglMqKGLDkUS5trTt64t9pnhAKgOQ7l3JA82FJQ9Y3ksKIEFhPak1CJQE a/Fu6svbGwaTc6OVAdm7pimmASS8ufjES8Iz9c5XBQFwe3micX+yixF+ThTq+R7I DzETPLbexM9gKauOjESA2p+cGhrXi08xScTT0OSaJQmXKRUddD+NUb8bRhXU8dUB edPo1Q/Ir0E2QqDwLIgOxKP1RMksgmvSU9bebvfM9eS9CFBZCM4lgXa1TM8YgtZS Tx4qvpokChnjkPEFbo/VQF1SgDx9mj1nJdr2RGNIL5LFjPIbOb53S6dgqnTz/ohk Z2T9PYtDLvMaHRSPBtx5yLa7kcl2KG4Hw4ffaTWpYHxP4ibuN2G0pqMgdy7Iw91Z XMhVLb8dWlInTM9BhG39ZRvSbVF7KWp3UhqeajlPeAsLDiQVGu7HqRpHcVSXUt0U 6bY+hqb6rHnbCP0+FCC85EBDTQKPJaFtgcgMfFrLncobVF4fRd0= =PeT5 -----END PGP SIGNATURE-----