Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Fedora 10 BIND 9.5.1 Important DoS Vulnerability Issue Fix Update 149558

fedora
Calendar Grey July 29, 2009
Scroller Fedora
Critical patch released for Fedora 10 addressing a vulnerability in bind DNS software. Boost your system's protection by applying this update.
Update to the latest release which fixes important security issue.

Summary

BIND (Berkeley Internet Name Domain) is an implementation of the DNS

(Domain Name System) protocols. BIND includes a DNS server (named),

which resolves host names to IP addresses; a resolver library

(routines for applications to use when interfacing with DNS); and

tools for verifying that the DNS server is operating properly.

Update Information:

Update to the latest release which fixes important security issue.

Change Log

* Wed Jul 29 2009 Adam Tkac 32:9.5.1-3.P3 - 9.5.1-P3 release (CVE-2009-0696) * Mon Mar 23 2009 Adam Tkac 32:9.5.1-2.P2 - 9.5.1-P2 release (handle unknown DLV algorithms well) - logrotate configuration file now points to /var/named/data/named.run by default (#489986) * Thu Jan 8 2009 Adam Tkac 32:9.5.1-1.P1 - 9.5.1-P1 release (CVE-2009-0025) - patches merged - bind-95-sdlz-include.patch - bind-96-rh475120.patch * Tue Dec 9 2008 Adam Tkac 32:9.5.1-0.9.3.b3 - allow to reuse address for non-random query-source ports (#475120) * Tue Dec 2 2008 Adam Tkac 32:9.5.1-0.9.2.b3 - fixed rare use-after-free problem in host utility (#452060) * Mon Dec 1 2008 Adam Tkac 32:9.5.1-0.9.1.b3 - improved sample config file (#473586) * Tue Nov 11 2008 Adam Tkac 32:9.5.1-0.9.b3 - 9.5.1b3 release - don't mount /proc in chroot, it is no longer needed * Mon Nov 3 2008 Adam Tkac 32:9.5.1-0.8.4.b2 - dig/host: use only IPv4 addresses when -4 option is specified (#469440) * Thu Oct 30 2008 Adam Tkac 32:9.5.1-0.8.2.b2 - removed unneeded bind-9.4.1-ldap-api.patch * Thu Oct 30 2008 Adam Tkac 32:9.5.1-0.8.1.b2 - ship dns/{s,}dlz.h and isc/radix.h in bind-devel

References


[ 1 ] Bug #514292 - CVE-2009-0696 bind: DoS (assertion failure) via nsupdate packets https://bugzilla.redhat.com/show_bug.cgi?id=514292

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update bind' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
important
Lowest
Low
Medium
High
Critical

Name: bind
Product: Fedora 10
Version: 9.5.1
Release: 3.P3.fc10
URL: Summary : The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) server

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.