Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora 28: 2018-c341b70641 Moderate: pdns-recursor Denial of Service

fedora
Calendar Grey December 16, 2018
Dist Fedora Esm H88
Receive important enhancements for PowerDNS Recursor on Fedora 28, targeting various CVEs and bolstering security measures.
Fixes CVE-2018-16855 (Crafted query can cause a denial of service) ---- New upstream release with security fixes for CVE-2018-10851, CVE-2018-14626 and CVE-2018-14644

Summary

PowerDNS Recursor is a non authoritative/recursing DNS server. Use this

package if you need a dns cache for your network.

Fixes CVE-2018-16855 (Crafted query can cause a denial of service) ---- New

upstream release with security fixes for CVE-2018-10851, CVE-2018-14626 and

CVE-2018-14644

* Wed Nov 28 2018 Ruben Kerkhof - 4.1.8-1

- Update to new upstream

- Fixes CVE-2018-16855

* Tue Nov 13 2018 Sander Hoentjen - 4.1.7-1

- Update to new upstream

- Fixes CVE-2018-10851, CVE-2018-14626 and CVE-2018-14644

* Fri Jul 13 2018 Fedora Release Engineering - 4.1.3-3

- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild

* Thu May 24 2018 Ruben Kerkhof - 4.1.3-2

- Fix sigabort (#1578732)

* Wed May 23 2018 Ruben Kerkhof - 4.1.3-1

- Upstream released new version

- Enable support for ed25519

[ 1 ] Bug #1649028 - CVE-2018-14626 pdns: Packet cache pollution via crafted query

https://bugzilla.redhat.com/show_bug.cgi?id=1649028

su -c 'dnf upgrade --advisory FEDORA-2018-c341b70641' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Product: Fedora 28
Version: 4.1.8
Release: 1.fc28
Summary: Modern, advanced and high performance recursing/non authoritative name server

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here