-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 12 Feb 2024 17:25:59 +0100 Source: bind9 Binary: bind9 bind9-dbgsym bind9-dev bind9-dnsutils bind9-dnsutils-dbgsym bind9-host bind9-host-dbgsym bind9-libs bind9-libs-dbgsym bind9-utils bind9-utils-dbgsym Architecture: arm64 Version: 1:9.16.48-1 Distribution: bullseye-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-03) Changed-By: Ondřej Surý Description: bind9 - Internet Domain Name Server bind9-dev - Static Libraries and Headers used by BIND 9 bind9-dnsutils - Clients provided with BIND 9 bind9-host - DNS Lookup Utility bind9-libs - Shared Libraries used by BIND 9 bind9-utils - Utilities for BIND 9 Changes: bind9 (1:9.16.48-1) bullseye-security; urgency=high . * New upstream version 9.16.48 - CVE-2023-4408: Parsing large DNS messages may cause excessive CPU load - CVE-2023-5517: Querying RFC 1918 reverse zones may cause an assertion failure when "nxdomain-redirect" is enabled - CVE-2023-5679: Enabling both DNS64 and serve-stale may cause an assertion failure during recursive resolution - CVE-2023-6516: Specific recursive query patterns may lead to an out-of-memory condition - CVE-2023-50387: KeyTrap - Extreme CPU consumption in DNSSEC validator - CVE-2023-50868: Preparing an NSEC3 closest encloser proof can exhaust CPU resources * Update patches from debian/9.16 branch - Disable treat-warnings-as-errors in sphinx-build - Remove the reference to OPTIONS.md - it breaks build on Debian stretch Checksums-Sha1: d1de6842ae7c2b0046eb48f8a0fa55e2bb689aeb 512080 bind9-dbgsym_9.16.48-1_arm64.deb ab285c2b790bc93925698294ce6802d65f032f98 1786228 bind9-dev_9.16.48-1_arm64.deb 12bebd61c78b3e573c76f08a579a2053e14d6a7b 282408 bind9-dnsutils-dbgsym_9.16.48-1_arm64.deb cd0ebd763129daedcfc74b6092a5609c68802c37 400564 bind9-dnsutils_9.16.48-1_arm64.deb 74e2c33a4a258bd1121a557b3e6e366f45de1163 79560 bind9-host-dbgsym_9.16.48-1_arm64.deb 1712cc42b6e3ae2a9790eb9216f0f429c9cfcae2 309044 bind9-host_9.16.48-1_arm64.deb 7da19da7bbd44d6d8c6a444cc2dc2821e13dddab 3383220 bind9-libs-dbgsym_9.16.48-1_arm64.deb e37b198864e2cd1a4566957a9435dd42faa0bc4d 1313744 bind9-libs_9.16.48-1_arm64.deb f8d0b16b4c5a0572d7116c3b6ff30fb4293aa89d 267112 bind9-utils-dbgsym_9.16.48-1_arm64.deb 6b19fa1db31fa5866762e356b5f9211336887877 431796 bind9-utils_9.16.48-1_arm64.deb 66fffa987c4fa91586a0cf52855fd507c0536304 10631 bind9_9.16.48-1_arm64-buildd.buildinfo 44b268a6d35dc2f34f2c5430af3d8182e597b6d9 481896 bind9_9.16.48-1_arm64.deb Checksums-Sha256: d8f4147d87747ae9b04d2cddd2a67598bcab6762e449e5d16672c6d0931ed1d3 512080 bind9-dbgsym_9.16.48-1_arm64.deb ea2c347fb45fa2a1b4c36a4f794f4f943f84c9c922d985d411b755fb18bc8f4a 1786228 bind9-dev_9.16.48-1_arm64.deb a4c2f1b137d0fe54d03143cd57100e3f81e2da45ef23c0d4e541d7778ccc2c33 282408 bind9-dnsutils-dbgsym_9.16.48-1_arm64.deb 5d4e1ea6dc98b1fe0d4300e33da61e6beb455fb6e8891c3d6718a663577b62d9 400564 bind9-dnsutils_9.16.48-1_arm64.deb f6dd8bd6fe6ae06402b51e68523a632a40a8ba0e5a36522a6b309d8f407ff435 79560 bind9-host-dbgsym_9.16.48-1_arm64.deb bd9b5b0824d35b301adf69c8d4387ca17863b96289c3861f96a5c4f6bccf5679 309044 bind9-host_9.16.48-1_arm64.deb c40fbce9b64ddd319df6a967c97232087237b4596234ff63475eb0f3ccab403e 3383220 bind9-libs-dbgsym_9.16.48-1_arm64.deb 327d6bbcfc81a4a49f8b0a38c1e04b3a9305d08a5c4da699edbdbf8b84417e65 1313744 bind9-libs_9.16.48-1_arm64.deb 3f99f781f842ffb58f498ad0d17d602f9602b432f1ba2d6493727db17fe31ceb 267112 bind9-utils-dbgsym_9.16.48-1_arm64.deb 3ae52ef9f994fb7cda17b54397997413ee53e56c7abb8c7da9d6247136bcba11 431796 bind9-utils_9.16.48-1_arm64.deb 0d8b91878119243e3b256b1bbfaa9f2d0020dd37949789297e6d3f5ac3416f3e 10631 bind9_9.16.48-1_arm64-buildd.buildinfo 107d8ec2f84d80322da112abc86d3267f097161e7869a745fbc73455b4180b81 481896 bind9_9.16.48-1_arm64.deb Files: 12bbffb19a92b3f4399ac9032b3dd3e5 512080 debug optional bind9-dbgsym_9.16.48-1_arm64.deb f653af9b824eeb98c50edc134b03ab8d 1786228 devel optional bind9-dev_9.16.48-1_arm64.deb 7bd366233709db93f6791931ea8c362b 282408 debug optional bind9-dnsutils-dbgsym_9.16.48-1_arm64.deb 4db328c777e2e0ff20fd0d5948c49c4b 400564 net standard bind9-dnsutils_9.16.48-1_arm64.deb 5244d3cb1d727c7c75d017068f74b6cd 79560 debug optional bind9-host-dbgsym_9.16.48-1_arm64.deb 7d29fe5f5052960ea9ece7bd12eb05bd 309044 net standard bind9-host_9.16.48-1_arm64.deb 811c32e3fdc2796ec6ca5d7addcb8cc7 3383220 debug optional bind9-libs-dbgsym_9.16.48-1_arm64.deb 196d2301f58f5ff3b062c13c40464c90 1313744 libs standard bind9-libs_9.16.48-1_arm64.deb 13d7d70911f9503e4f82ca0607d88e85 267112 debug optional bind9-utils-dbgsym_9.16.48-1_arm64.deb 4887fef9f79548c1231afe7d1a467fdf 431796 net optional bind9-utils_9.16.48-1_arm64.deb 0951c0673ac659de5437c6c1509c1eb4 10631 net optional bind9_9.16.48-1_arm64-buildd.buildinfo d5eee2b4e014a039597668899f9b9a75 481896 net optional bind9_9.16.48-1_arm64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEV2QMHg/7F9BmqsxiZLztDiV8cXAFAmXKVNEACgkQZLztDiV8 cXDsHw//bxBkep0uvmz+/HEVCctFf3Cm1Kq59uYPOh6/B0WoG1YfmNKwqZIbD6bb HeSOMcpIUJ68EjNYcujJHHOPGZ9eBjwOjZvE4AycmYKd2KJ0J7nkGGZZ3L0dKSPh kgcxcMSZqcChydt9gvJxM6v+EQmTa3At4VUBnaUbKPr0/w4rtw7bzYi4hFeEXKyP SXn5BZly3iaTBXT8sb3igbatzJemmmzvhIPMRIuuhfC7D+GvLg+HgOmkM7xcuZVT OgxQpUJcuhfBJweIIv6yOkOsswIBVCnhuC8jWXLv6rigTRPeVX6gEL1nQhJx3ZsF sWbNR2CFdtABtktJ3o0ZLnJuiOyVs2cMmgXVJ//q/IVbFI3/kJXWy6VM8wx8njdh rC1MO3sLEWQEBZm8ydNfKgILlZzahIarNDE3Pw/GZEL3M+FY8UhqTCQqMLXwdiXT +GUZaVqVMSvUMuJR0Mk1A/TY2wA4K2tQkAMEu04FD28xbvMIZ9N+IZJ95mUN1DlO R/bq13WqIR9ahMBZ8y/qMFfeW07kVWNl4vR9/3oeVkstmtGMjpQbZW0bGd+TJiMI Sa1sDZOoqIH6xLE6KiHt2Kvhg073bvWfPiRK6hSA3zMzuZtX5gfSqDfs7elZBOG7 fwyHx2I872bJqH79OdW4EbgXB4HBhND2wqWiw+EuEOLx6no7KOI= =aspu -----END PGP SIGNATURE-----