Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Date: Mon, 16 Jan 2017 16:54:16 -0000 Reply-To: scientific-linux-users@ Sender: Security Errata for Scientific LinuxFrom: Pat Riehecky Subject: Security ERRATA Important: bind97 on SL5.x i386/x86_64 MIME-Version: 1.0 Message-ID: <20170116165416.31975.53456@slpackages.fnal.gov> Synopsis: Important: bind97 security update Advisory ID: SLSA-2017:0064-1 Issue Date: 2017-01-16 CVE Numbers: CVE-2016-9147 -- Security Fix(es): * A denial of service flaw was found in the way BIND handled a query response containing inconsistent DNSSEC information. A remote attacker could use this flaw to make named exit unexpectedly with an assertion failure via a specially crafted DNS response. (CVE-2016-9147) -- SL5 x86_64 bind97-9.7.0-21.P2.el5_11.10.x86_64.rpm bind97-chroot-9.7.0-21.P2.el5_11.10.x86_64.rpm bind97-debuginfo-9.7.0-21.P2.el5_11.10.i386.rpm bind97-debuginfo-9.7.0-21.P2.el5_11.10.x86_64.rpm bind97-devel-9.7.0-21.P2.el5_11.10.i386.rpm bind97-devel-9.7.0-21.P2.el5_11.10.x86_64.rpm bind97-libs-9.7.0-21.P2.el5_11.10.i386.rpm bind97-libs-9.7.0-21.P2.el5_11.10.x86_64.rpm bind97-utils-9.7.0-21.P2.el5_11.10.x86_64.rpm i386 bind97-9.7.0-21.P2.el5_11.10.i386.rpm bind97-chroot-9.7.0-21.P2.el5_11.10.i386.rpm bind97-debuginfo-9.7.0-21.P2.el5_11.10.i386.rpm bind97-devel-9.7.0-21.P2.el5_11.10.i386.rpm bind97-libs-9.7.0-21.P2.el5_11.10.i386.rpm bind97-utils-9.7.0-21.P2.el5_11.10.i386.rpm - Scientific Linux Development Team