Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 515
Alerts This Week
Warning Icon 1 515

Fedora 21: FEDORA-2015-11484 Moderate: Fix for Bind DoS Vulnerability

fedora
Calendar Grey July 21, 2015
Scroller Fedora
The latest patch for Ubuntu 20 rectifies a security flaw in the openssl library, improving overall system integrity and trustworthiness.
fix for CVE-2015-4620

Summary

BIND (Berkeley Internet Name Domain) is an implementation of the DNS

(Domain Name System) protocols. BIND includes a DNS server (named),

which resolves host names to IP addresses; a resolver library

(routines for applications to use when interfacing with DNS); and

tools for verifying that the DNS server is operating properly.

Update Information:

fix for CVE-2015-4620

Change Log

* Thu Jul 9 2015 Tomas Hozza - 32:9.9.6-9.P1 - Include fix for CVE-2015-4620 * Mon Feb 23 2015 Tomas Hozza - 32:9.9.6-8.P1 - Include fix for CVE-2015-1349 * Mon Feb 2 2015 Tomas Hozza - 32:9.9.6-7.P1 - Fix nsupdate server auto-detection (#1184151) * Fri Dec 12 2014 Tomas Hozza - 32:9.9.6-6.P1 - Fix host/nslookup crash when remote server could not be reached (#1172935) * Tue Dec 9 2014 Tomas Hozza - 32:9.9.6-5.P1 - Update to 9.9.6-P1 (CVE-2014-8500)

References


[ 1 ] Bug #1237258 - CVE-2015-4620 bind: abort DoS caused by uninitialized value use in isselfsigned() https://bugzilla.redhat.com/show_bug.cgi?id=1237258

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update bind' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
important
Lowest
Low
Medium
High
Critical

Name: bind
Product: Fedora 21
Version: 9.9.6
Release: 9.P1.fc21
URL: Summary : The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) server

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.