Alerts This Week
Warning Icon 1 687
Alerts This Week
Warning Icon 1 687

Slackware: 2019-324-01 Critical: bind TCP Query Limit Security Flaw

slackware
Calendar Grey November 20, 2019
Dist Slackware Esm H88
Latest bind updates address a vulnerability in Slackware systems. Detailed upgrade guidelines are available for multiple versions.
New bind packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix a security issue

Summary

Here are the details from the Slackware 14.2 ChangeLog: patches/packages/bind-9.11.13-i586-1_slack14.2.txz: Upgraded. This update fixes a security issue: Set a limit on the number of concurrently served pipelined TCP queries. For more information, see: https://www.cve.org/CVERecord?id=CVE-2019-6477 (* Security fix *)

Where Find New Packages

Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated package for Slackware 14.0:
Updated package for Slackware x86_64 14.0:
Updated package for Slackware 14.1:
Updated package for Slackware x86_64 14.1:
Updated package for Slackware 14.2:
Updated package for Slackware x86_64 14.2:
Updated package for Slackware -current:
Updated package for Slackware x86_64 -current:

MD5 Signatures

Slackware 14.0 package: a04b71235a460444f9103b4d8eb9a196 bind-9.11.13-i486-1_slack14.0.txz
Slackware x86_64 14.0 package: 54cec32b6bdb53daeb07d47c6b226821 bind-9.11.13-x86_64-1_slack14.0.txz
Slackware 14.1 package: 71fffdb9f3bfdb8ef585981f5542ce2d bind-9.11.13-i486-1_slack14.1.txz
Slackware x86_64 14.1 package: 3653dc3b6d8e49a263fc812716fd1b82 bind-9.11.13-x86_64-1_slack14.1.txz
Slackware 14.2 package: 98f26d1f2bb128b69eca57a338dcb9ef bind-9.11.13-i586-1_slack14.2.txz
Slackware x86_64 14.2 package: 1dda823d4a09a7668969676c7e316ede bind-9.11.13-x86_64-1_slack14.2.txz
Slackware -current package: 7d1d9a7c6e08a46b802363a95426c546 n/bind-9.14.8-i586-1.txz
Slackware x86_64 -current package: 6de17e03097afa7a37ce2f0a3f9b6449 n/bind-9.14.8-x86_64-1.txz

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the package as root: # upgradepkg bind-9.11.13-i586-1_slack14.2.txz Then, restart the name server: # /etc/rc.d/rc.bind restart

Related News

Your message here