]> CyberLeo.Net >> Repos - FreeBSD/FreeBSD.git/commit - contrib/tcsh/nls/pl/set3
Update to version 9.6-ESV-R3, the latest from ISC, which addresses
authorDoug Barton <dougb@FreeBSD.org>
Sat, 4 Dec 2010 05:58:56 +0000 (05:58 +0000)
committerDoug Barton <dougb@FreeBSD.org>
Sat, 4 Dec 2010 05:58:56 +0000 (05:58 +0000)
commitc3c441cd465bac8445ac300e23175c4241a23231
treef01f0fcdfd363df827bfbc878514d9fc94ccdca9
parentbef5da7f9807b61ba1878f9308ec51e7b52bf719
parentf805c4c11684ad447d955512cb705ebc2aba9ef3
Update to version 9.6-ESV-R3, the latest from ISC, which addresses
the following security vulnerabilities.

For more information regarding these issues please see:
http://www.isc.org/announcement/guidance-regarding-dec-1st-2010-security-advisories

1. Cache incorrectly allows ncache and rrsig for the same type

   http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3613

   Affects resolver operators whose servers are open to potential
   attackers. Triggering the bug will cause the server to crash.

   This bug applies even if you do not have DNSSEC enabled.

2. Key algorithm rollover

   http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3614

   Affects resolver operators who are validating with DNSSEC, and
   querying zones which are in a key rollover period. The bug will
   cause answers to incorrectly be marked as insecure.
23 files changed:
contrib/bind9/CHANGES
contrib/bind9/RELEASE-NOTES-BIND-9.6-ESV.html
contrib/bind9/RELEASE-NOTES-BIND-9.6-ESV.pdf
contrib/bind9/RELEASE-NOTES-BIND-9.6-ESV.txt
contrib/bind9/bin/check/check-tool.c
contrib/bind9/bin/check/check-tool.h
contrib/bind9/bin/check/named-checkconf.c
contrib/bind9/bin/check/named-checkzone.c
contrib/bind9/bin/dig/host.c
contrib/bind9/bin/named/client.c
contrib/bind9/bin/named/include/named/query.h
contrib/bind9/bin/named/query.c
contrib/bind9/bin/named/server.c
contrib/bind9/lib/dns/api
contrib/bind9/lib/dns/include/dns/view.h
contrib/bind9/lib/dns/journal.c
contrib/bind9/lib/dns/rbtdb.c
contrib/bind9/lib/dns/validator.c
contrib/bind9/lib/dns/view.c
contrib/bind9/lib/isc/api
contrib/bind9/lib/isc/print.c
contrib/bind9/release-notes.css
contrib/bind9/version