-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 12 Feb 2024 17:25:59 +0100 Source: bind9 Binary: bind9 bind9-dbgsym bind9-dev bind9-dnsutils bind9-dnsutils-dbgsym bind9-host bind9-host-dbgsym bind9-libs bind9-libs-dbgsym bind9-utils bind9-utils-dbgsym Architecture: s390x Version: 1:9.16.48-1 Distribution: bullseye-security Urgency: high Maintainer: s390x Build Daemon (zani) Changed-By: Ondřej Surý Description: bind9 - Internet Domain Name Server bind9-dev - Static Libraries and Headers used by BIND 9 bind9-dnsutils - Clients provided with BIND 9 bind9-host - DNS Lookup Utility bind9-libs - Shared Libraries used by BIND 9 bind9-utils - Utilities for BIND 9 Changes: bind9 (1:9.16.48-1) bullseye-security; urgency=high . * New upstream version 9.16.48 - CVE-2023-4408: Parsing large DNS messages may cause excessive CPU load - CVE-2023-5517: Querying RFC 1918 reverse zones may cause an assertion failure when "nxdomain-redirect" is enabled - CVE-2023-5679: Enabling both DNS64 and serve-stale may cause an assertion failure during recursive resolution - CVE-2023-6516: Specific recursive query patterns may lead to an out-of-memory condition - CVE-2023-50387: KeyTrap - Extreme CPU consumption in DNSSEC validator - CVE-2023-50868: Preparing an NSEC3 closest encloser proof can exhaust CPU resources * Update patches from debian/9.16 branch - Disable treat-warnings-as-errors in sphinx-build - Remove the reference to OPTIONS.md - it breaks build on Debian stretch Checksums-Sha1: 30b9c6e672c9266d5896ff23e5915e6c8130905e 520384 bind9-dbgsym_9.16.48-1_s390x.deb af33c5381eafdf7fad36b98e5665773acc93cf61 1686848 bind9-dev_9.16.48-1_s390x.deb 6cc1b652a72c487254048d34c5c0e70aef8ec31d 286396 bind9-dnsutils-dbgsym_9.16.48-1_s390x.deb 386d3f477ae6a0acb297ccbc43a457a4e535d037 398452 bind9-dnsutils_9.16.48-1_s390x.deb 9d7c792ec6f2c06b127d12bcdd79c565f6e8f394 81580 bind9-host-dbgsym_9.16.48-1_s390x.deb 3a9f9d79edb95714e2de86a4986ba6fae2c41505 308344 bind9-host_9.16.48-1_s390x.deb e0a847b8e8f4d4e424bec796ed2384e3c562d74c 3509644 bind9-libs-dbgsym_9.16.48-1_s390x.deb e8cf0a1f04e51d134a80863be068ecb8d5566ae3 1294200 bind9-libs_9.16.48-1_s390x.deb 8b0915e97dc477ccb5809f23c01a655056685ca5 263728 bind9-utils-dbgsym_9.16.48-1_s390x.deb 901ef75b86e2a0013973bf5dc7dc8a930827da7d 431280 bind9-utils_9.16.48-1_s390x.deb 6ace388ae71d6a05a6bb5c873f6fa31dea6ee8b4 10597 bind9_9.16.48-1_s390x-buildd.buildinfo bc012e55be778cd683dd1f6f76b4c75fecb55044 480004 bind9_9.16.48-1_s390x.deb Checksums-Sha256: 55f9ef439c4e280322746eb0e9da8a1b53e6d4f05f2bb6ac178536aa6d88b01e 520384 bind9-dbgsym_9.16.48-1_s390x.deb f158dd7b566deccd309af65bd2d589952c302c259de8cca7948ca8ebed8abcd5 1686848 bind9-dev_9.16.48-1_s390x.deb c43cd6070ad3387e8f55f4b9cf7ad2e02102fc50653be08c261c89e53879b6a3 286396 bind9-dnsutils-dbgsym_9.16.48-1_s390x.deb af59cb28d71c7fcdc70be21595b62806b07fc66ce8a57ffafa48252b43212b5e 398452 bind9-dnsutils_9.16.48-1_s390x.deb a030edef7e6d40e56680bc1a80fc2d068d2281a6e96e2e0495faa8f80edf8e82 81580 bind9-host-dbgsym_9.16.48-1_s390x.deb aa97e89dde5f277eef9acf7aa8f6168b81b1f3127b9655525c52422a4b2ea2c8 308344 bind9-host_9.16.48-1_s390x.deb 719bf1e3be862ba963104d46dd5d641097564839c2fa38e4cb4b4548765bcc6c 3509644 bind9-libs-dbgsym_9.16.48-1_s390x.deb bbbcf585dac5ffc87f159e6fa80f777b5b82161f8ff4b73b3ced8a2dbfa55ee6 1294200 bind9-libs_9.16.48-1_s390x.deb 529e4bd6ae995ff51dd9370e870c4020bfbc4e31b51fa2fcb1b224e922ee2705 263728 bind9-utils-dbgsym_9.16.48-1_s390x.deb 205d0d55232587ab752dff40b6da0885055a61064e5f55816c417a0533d77c50 431280 bind9-utils_9.16.48-1_s390x.deb 2b3f4d41f214a182bda5b663df29f78956a7df563f5d16283bcf16bb911fb7a6 10597 bind9_9.16.48-1_s390x-buildd.buildinfo 667dd9723972b6571722331a18dd92f985287eb0e442514c9ff3e4a985bc1676 480004 bind9_9.16.48-1_s390x.deb Files: 2311c70563f809262761058da11b8b52 520384 debug optional bind9-dbgsym_9.16.48-1_s390x.deb d9321387214c942d2ecbda820aaa987e 1686848 devel optional bind9-dev_9.16.48-1_s390x.deb 029b77b5618af715bebaa322e5ec1785 286396 debug optional bind9-dnsutils-dbgsym_9.16.48-1_s390x.deb d88c0026b046cec5d82a029b09c37b57 398452 net standard bind9-dnsutils_9.16.48-1_s390x.deb 8ccbd88b080053e3e18a7c76d08d1891 81580 debug optional bind9-host-dbgsym_9.16.48-1_s390x.deb ecab0c67e38647735f41e23bd5066ca8 308344 net standard bind9-host_9.16.48-1_s390x.deb f9421e6aed28e94aca29ec73098fc9a0 3509644 debug optional bind9-libs-dbgsym_9.16.48-1_s390x.deb 1bd2f9df5337d6d264740de508b084d1 1294200 libs standard bind9-libs_9.16.48-1_s390x.deb f7326a03e84869e138d7d092468cf0d7 263728 debug optional bind9-utils-dbgsym_9.16.48-1_s390x.deb 30b7f879542e165a9aeef6aa2fba681d 431280 net optional bind9-utils_9.16.48-1_s390x.deb 75700292c0b45ca622567d2030d28555 10597 net optional bind9_9.16.48-1_s390x-buildd.buildinfo 0a8003ad2c551c42ced4be7b6d81b8e2 480004 net optional bind9_9.16.48-1_s390x.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEETdQgQHyJW2hcXsTC6b+AMjGgQHgFAmXKUbcACgkQ6b+AMjGg QHif5A/+IW4ZyYcLjdxCpIkDo5f8aOYDztu/SZ6p9ymBMZqPkoHpB3TBkbTHuaw1 utVmvyLQX9k591wxg8GNbnfKAU/fCOlTlrdIwOMhW/f7A9iPiwHwEBUhSFfUHU1q nboVHctH8Lrm9VWrIV45xnz6oEC9S40CpbaoR3HhE3rkf9fHPY1dm4nOSwVvPdSa lAxCoZ6DQnJsXVQ+Jf1agEn9BecoUIPeJ/niYyXHuUFZTxRIZ+Duy0cBs9ZVZDVD L6hmwODSAWQM318xKUoWWXINgB3M1i4cnDgQw9VjbnN3yESQVQ2wGabv4kOZAPqs DlHbg2YiCtQT3bxqOrVLHojpkx2u3Y+KXR9/kSsF5DFspUCBaVQiAXN79XR9cJB9 WQFYB5DEIaUxRgPxNgKD/Q3YHzlw3S2ueSpHoIFome/vbgGIQb3zLuwyZkxo4ClA pwhpPRAQSVlSM+BU7BD7195Y2F9IvERAgdW0eicyqu/ZeTFBGJoE4aFp+rJ3jdSm OCW2wJgQh3RIY2PWlGIkzFjxyeaRBgDZp0gy0KiU3TeSd/Y/maTZbup9GPE33LGp 0Gi3c0G44OXCU02Ac2FVFcKEy59DqtuP3VdEeq5RUhDkqUn6b7DeaRsHx0hYIM/Y eTntVC0+3IFtIc4iyzDM0gpp6RqIBXULCZ6eVrO8405QXPoTKIw= =OSJf -----END PGP SIGNATURE-----