Date: Sat, 4 Dec 2010 05:58:56 +0000 (UTC) From: Doug Barton <dougb@FreeBSD.org> To: cvs-src-old@freebsd.org Subject: cvs commit: src/contrib/bind9 CHANGES RELEASE-NOTES-BIND-9.6-ESV.html RELEASE-NOTES-BIND-9.6-ESV.pdf RELEASE-NOTES-BIND-9.6-ESV.txt release-notes.css version src/contrib/bind9/bin/check check-tool.c check-tool.h named-checkconf.c named-checkzone.c src/contrib/bind9/bin/dig ... Message-ID: <201012040559.oB45xIks064478@repoman.freebsd.org>
next in thread | raw e-mail | index | archive | help
dougb 2010-12-04 05:58:56 UTC
FreeBSD src repository
Modified files:
contrib/bind9 CHANGES version
contrib/bind9/bin/check check-tool.c check-tool.h
named-checkconf.c named-checkzone.c
contrib/bind9/bin/dig host.c
contrib/bind9/bin/named client.c query.c server.c
contrib/bind9/bin/named/include/named query.h
contrib/bind9/lib/dns api journal.c rbtdb.c validator.c view.c
contrib/bind9/lib/dns/include/dns view.h
contrib/bind9/lib/isc api print.c
Added files:
contrib/bind9 RELEASE-NOTES-BIND-9.6-ESV.html
RELEASE-NOTES-BIND-9.6-ESV.pdf
RELEASE-NOTES-BIND-9.6-ESV.txt
release-notes.css
Log:
SVN rev 216175 on 2010-12-04 05:58:56Z by dougb
Update to version 9.6-ESV-R3, the latest from ISC, which addresses
the following security vulnerabilities.
For more information regarding these issues please see:
http://www.isc.org/announcement/guidance-regarding-dec-1st-2010-security-advisories
1. Cache incorrectly allows ncache and rrsig for the same type
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3613
Affects resolver operators whose servers are open to potential
attackers. Triggering the bug will cause the server to crash.
This bug applies even if you do not have DNSSEC enabled.
2. Key algorithm rollover
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3614
Affects resolver operators who are validating with DNSSEC, and
querying zones which are in a key rollover period. The bug will
cause answers to incorrectly be marked as insecure.
Revision Changes Path
1.16 +52 -0 src/contrib/bind9/CHANGES
1.1 +225 -0 src/contrib/bind9/RELEASE-NOTES-BIND-9.6-ESV.html (new)
1.1 +321 -0 src/contrib/bind9/RELEASE-NOTES-BIND-9.6-ESV.pdf (new)
1.1 +133 -0 src/contrib/bind9/RELEASE-NOTES-BIND-9.6-ESV.txt (new)
1.4 +29 -2 src/contrib/bind9/bin/check/check-tool.c
1.3 +7 -2 src/contrib/bind9/bin/check/check-tool.h
1.4 +10 -2 src/contrib/bind9/bin/check/named-checkconf.c
1.6 +9 -2 src/contrib/bind9/bin/check/named-checkzone.c
1.4 +6 -4 src/contrib/bind9/bin/dig/host.c
1.6 +4 -4 src/contrib/bind9/bin/named/client.c
1.3 +4 -2 src/contrib/bind9/bin/named/include/named/query.h
1.8 +11 -14 src/contrib/bind9/bin/named/query.c
1.9 +23 -18 src/contrib/bind9/bin/named/server.c
1.13 +2 -2 src/contrib/bind9/lib/dns/api
1.3 +4 -2 src/contrib/bind9/lib/dns/include/dns/view.h
1.5 +14 -7 src/contrib/bind9/lib/dns/journal.c
1.9 +53 -12 src/contrib/bind9/lib/dns/rbtdb.c
1.11 +47 -11 src/contrib/bind9/lib/dns/validator.c
1.7 +7 -1 src/contrib/bind9/lib/dns/view.c
1.7 +1 -1 src/contrib/bind9/lib/isc/api
1.4 +3 -3 src/contrib/bind9/lib/isc/print.c
1.1 +60 -0 src/contrib/bind9/release-notes.css (new)
1.16 +2 -2 src/contrib/bind9/version
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?201012040559.oB45xIks064478>
