SciLinux: CVE-2015-5477 Important: bind SL5.x i386/x86_64
Summary
Important: bind security update
Date: Wed, 29 Jul 2015 15:18:10 +0000 Reply-To: scientific-linux-users@listserv.fnal.gov Sender: Security Errata for Scientific LinuxFrom: Pat Riehecky Subject: Security ERRATA Important: bind on SL5.x i386/x86_64 MIME-Version: 1.0 Message-ID: <20150729151810.19795.3054@slpackages.fnal.gov> Synopsis: Important: bind security update Advisory ID: SLSA-2015:1514-1 Issue Date: 2015-07-29 CVE Numbers: CVE-2015-5477 -- A flaw was found in the way BIND handled requests for TKEY DNS resource records. A remote attacker could use this flaw to make named (functioning as an authoritative DNS server or a DNS resolver) exit unexpectedly with an assertion failure via a specially crafted DNS request packet. (CVE-2015-5477) After installing the update, the BIND daemon (named) will be restarted automatically. -- SL5 x86_64 bind-9.3.6-25.P1.el5_11.3.x86_64.rpm bind-debuginfo-9.3.6-25.P1.el5_11.3.i386.rpm bind-debuginfo-9.3.6-25.P1.el5_11.3.x86_64.rpm bind-libs-9.3.6-25.P1.el5_11.3.i386.rpm bind-libs-9.3.6-25.P1.el5_11.3.x86_64.rpm bind-sdb-9.3.6-25.P1.el5_11.3.x86_64.rpm bind-utils-9.3.6-25.P1.el5_11.3.x86_64.rpm bind-chroot-9.3.6-25.P1.el5_11.3.x86_64.rpm bind-devel-9.3.6-25.P1.el5_11.3.i386.rpm bind-devel-9.3.6-25.P1.el5_11.3.x86_64.rpm bind-libbind-devel-9.3.6-25.P1.el5_11.3.i386.rpm bind-libbind-devel-9.3.6-25.P1.el5_11.3.x86_64.rpm caching-nameserver-9.3.6-25.P1.el5_11.3.x86_64.rpm i386 bind-9.3.6-25.P1.el5_11.3.i386.rpm bind-debuginfo-9.3.6-25.P1.el5_11.3.i386.rpm bind-libs-9.3.6-25.P1.el5_11.3.i386.rpm bind-sdb-9.3.6-25.P1.el5_11.3.i386.rpm bind-utils-9.3.6-25.P1.el5_11.3.i386.rpm bind-chroot-9.3.6-25.P1.el5_11.3.i386.rpm bind-devel-9.3.6-25.P1.el5_11.3.i386.rpm bind-libbind-devel-9.3.6-25.P1.el5_11.3.i386.rpm caching-nameserver-9.3.6-25.P1.el5_11.3.i386.rpm - Scientific Linux Development Team
Important: bind security update