[Technik] [SECURITY] [DSA 1254-1] New bind9 packages fix denial of service

Noèl Köthe noel at debian.org
Sun Jan 28 21:44:45 CET 2007


Am Sonntag, den 28.01.2007, 21:22 +0100 schrieb Moritz Muehlenhoff:

> Debian Security Advisory DSA 1254-1                    security at debian.org
> http://www.debian.org/security/                         Moritz Muehlenhoff
> January 27th, 2007                      http://www.debian.org/security/faq
> 
> Package        : bind9
> Vulnerability  : insufficient input sanitising
> Problem-Type   : remote
> Debian-specific: no
> CVE ID         : CVE-2006-0494

bind9 auf h01 (dns1), h02, h03, h04, h90, cupa(dns2), wasco(dns3)
aktualisiert.

> For the stable distribution (sarge) this problem has been fixed in
> version 9.2.4-1sarge2.

changelog:
bind9 (1:9.2.4-1sarge2) stable; urgency=low

  * Backport fix for CVE-2007-0494 (delta between 9.2.7 and 9.2.8)

 -- LaMont Jones <lamont at debian.org>  Thu, 25 Jan 2007 17:44:57 -0700

-- 
Noèl Köthe <noel debian.org>
Debian GNU/Linux, www.debian.org
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Dies ist ein digital signierter Nachrichtenteil
Url : /archiv/technik/attachments/20070128/74f6ceda/attachment.pgp


More information about the Technik mailing list