-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 12 Feb 2024 17:25:59 +0100 Source: bind9 Binary: bind9 bind9-dbgsym bind9-dev bind9-dnsutils bind9-dnsutils-dbgsym bind9-host bind9-host-dbgsym bind9-libs bind9-libs-dbgsym bind9-utils bind9-utils-dbgsym Architecture: armhf Version: 1:9.16.48-1 Distribution: bullseye-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-04) Changed-By: Ondřej Surý Description: bind9 - Internet Domain Name Server bind9-dev - Static Libraries and Headers used by BIND 9 bind9-dnsutils - Clients provided with BIND 9 bind9-host - DNS Lookup Utility bind9-libs - Shared Libraries used by BIND 9 bind9-utils - Utilities for BIND 9 Changes: bind9 (1:9.16.48-1) bullseye-security; urgency=high . * New upstream version 9.16.48 - CVE-2023-4408: Parsing large DNS messages may cause excessive CPU load - CVE-2023-5517: Querying RFC 1918 reverse zones may cause an assertion failure when "nxdomain-redirect" is enabled - CVE-2023-5679: Enabling both DNS64 and serve-stale may cause an assertion failure during recursive resolution - CVE-2023-6516: Specific recursive query patterns may lead to an out-of-memory condition - CVE-2023-50387: KeyTrap - Extreme CPU consumption in DNSSEC validator - CVE-2023-50868: Preparing an NSEC3 closest encloser proof can exhaust CPU resources * Update patches from debian/9.16 branch - Disable treat-warnings-as-errors in sphinx-build - Remove the reference to OPTIONS.md - it breaks build on Debian stretch Checksums-Sha1: 5502c8d44cd8bc16329233ff3893fd4effa4ed9f 503964 bind9-dbgsym_9.16.48-1_armhf.deb 56d6425cd2e08e693e76202e83d31c807c0afab7 1728284 bind9-dev_9.16.48-1_armhf.deb c4a2a61cb9d29e819a0be664f0565738f98c1bf2 280168 bind9-dnsutils-dbgsym_9.16.48-1_armhf.deb ce23ab9ba6876d880bc11938ed252a9aa88f69fb 402492 bind9-dnsutils_9.16.48-1_armhf.deb f44227a469eda9c30dd10a7539330d5ab4cef851 79000 bind9-host-dbgsym_9.16.48-1_armhf.deb de1c3da007717ce3502cf529cf2fb7d9b94da648 308752 bind9-host_9.16.48-1_armhf.deb 2446c980239da344f62772ba3a572868bad7d4a5 3297552 bind9-libs-dbgsym_9.16.48-1_armhf.deb a0f4781f519f6bffada21d15fccef9f393ebdf7c 1311584 bind9-libs_9.16.48-1_armhf.deb 121ad5122e7b85ab46bb3204855ed83d889c5795 260200 bind9-utils-dbgsym_9.16.48-1_armhf.deb 66a598403bddcc20feb87179126d691ec545d962 432668 bind9-utils_9.16.48-1_armhf.deb 110cc957173d0471797100d5997e0146b4d4a710 10562 bind9_9.16.48-1_armhf-buildd.buildinfo 4e901d3150a9cf000c00a6b5ae83ceb1bb65f32c 487592 bind9_9.16.48-1_armhf.deb Checksums-Sha256: bf261b9f573b028c878aea75dd677ccbf56c35e0e6c255ff289d0703cfeb1836 503964 bind9-dbgsym_9.16.48-1_armhf.deb 1df1cb5129f5cd0ed96a176e0c7bac838993a644f8bcc2b5199f5564895e870c 1728284 bind9-dev_9.16.48-1_armhf.deb 8b0a5eef3d79e14034f46cc326e85fda0fe43f25abc7d25168aadc4732477a36 280168 bind9-dnsutils-dbgsym_9.16.48-1_armhf.deb 3b3a0b936dc1f195cf963b91e2cddf55241d077db241880dceda80bf38a3c9cc 402492 bind9-dnsutils_9.16.48-1_armhf.deb 272e0e77ef3d00a688525440dd705533ae38870af28139860a9f40923004c82b 79000 bind9-host-dbgsym_9.16.48-1_armhf.deb 525b0456345f6b9d0f949805a92e08d6b94a00b3fc8b03970dc004643129e470 308752 bind9-host_9.16.48-1_armhf.deb 147a31d79f1d9cdbeae5cf92be8531257196700b7bbc185b99b490fab37a9e73 3297552 bind9-libs-dbgsym_9.16.48-1_armhf.deb 0f9ed589fefcd5c6f8247bc12c3d28ba5488662f5f709503f746f065a4a6d5d4 1311584 bind9-libs_9.16.48-1_armhf.deb f1faedbafb06d4a28a519d6303f9d27ffffac2ecf5cf5232398570a31eb5cd4b 260200 bind9-utils-dbgsym_9.16.48-1_armhf.deb e3176f1406b107ff5d22cbf0525b157d971b53164073670c9bc6d4d13955ad10 432668 bind9-utils_9.16.48-1_armhf.deb 5170937b48808f750fa1865e2f4a53852c818403190f4608b3de12ce3429d97e 10562 bind9_9.16.48-1_armhf-buildd.buildinfo 21c2b9ea7f0cec4dfcdfd3c247f77e88193faf930f816baa4c570b63f7b43419 487592 bind9_9.16.48-1_armhf.deb Files: 1996ece3d4b0d19d52139e7f31cd624a 503964 debug optional bind9-dbgsym_9.16.48-1_armhf.deb 6d15823029f918e5976087ed6ef045df 1728284 devel optional bind9-dev_9.16.48-1_armhf.deb 4142cfe8ec8a5913a9a4bae36600e5d9 280168 debug optional bind9-dnsutils-dbgsym_9.16.48-1_armhf.deb 0d1c04e5d43e40f9f83d9abc0545768d 402492 net standard bind9-dnsutils_9.16.48-1_armhf.deb b328540271ebb71c1ee32ddc5dbfbd8e 79000 debug optional bind9-host-dbgsym_9.16.48-1_armhf.deb d09157931ac5db4210ae031d86369652 308752 net standard bind9-host_9.16.48-1_armhf.deb c3daa919fe6fe2c9317a4cffa0a96357 3297552 debug optional bind9-libs-dbgsym_9.16.48-1_armhf.deb 7f7f77d5aa004f18beb7b0a83eac17a7 1311584 libs standard bind9-libs_9.16.48-1_armhf.deb 651514dfb02d559feddd516573a9772f 260200 debug optional bind9-utils-dbgsym_9.16.48-1_armhf.deb ee3429d8da62707adfbd59e07c01b081 432668 net optional bind9-utils_9.16.48-1_armhf.deb cf55ce2680c899dbbd192b06596ef277 10562 net optional bind9_9.16.48-1_armhf-buildd.buildinfo 8c84d5132af0d6f92bd7956de718a3c3 487592 net optional bind9_9.16.48-1_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEU5Ohx66NeEdc9V4jWTHLDRjMKsQFAmXKVV8ACgkQWTHLDRjM KsQFvRAAkSZlrmS/bB0pKtCvLNrrXGXU0jrngxcBVrSyCZrBDpW5yJRa3JAbMTw7 h6G6G9olwyoMdPdk/y2yMqtk41+vOyLe7YCpDWyiWswEJf8HURtjgUfRtVLRoHbf QGdhe0xLukCFKM5AX/PI6rPjwOiNj1lXfd3sJz++xFhf+997ud/tX5OJ0B4hCUZn QVicJJD4p1eFfPRIVDVGK8eBgqkYmo2/SFeZNgn8wsjApSft97hTq4B8ZBTdZCZx /670H2UqgBC2+9qnSfDYb58iBIG5IO0Jj/Wco08ADZ1J3+7dKlHCKeXmbPVDcNBP V4Y3sLyeHGU+r+ml8xHESGOu/hEHo/LmVSjEwq46EUXdur2Vtr6IzUCXQHu8RBrx MzwJldWdeMuhGxneEHF+0K+kzYynl4m/WDccxBo7k4XH8lQqIvKRPWZAQj1pSlb/ uvzmHgBwcgYG74bQ6n2wKCLV7BNZKIt5+QRVhltyHwItOcb7l1HQu1C3sfNiYlfu W+zvSaDBocchdopaK5rWKWxzuP2fgkgpJ45xLM9gt6QvEUpAGhRvqRIu5me4UAuN EsNKG5oFYFwyeYT90UISgdlufgmN4TWSSAPl71gxSMruih0/neOxk/vV4IEg+ETt Gwjfcj7/fIu9PFfs9VYYicaRAcEXNOvMtvPjuO5HIf4d+/pDwaM= =vhMe -----END PGP SIGNATURE-----