Alerts This Week
Warning Icon 1 541
Alerts This Week
Warning Icon 1 541

Slackware: 2020-170-01 Critical: Bind DoS Threat Mitigation

slackware
Calendar Grey June 18, 2020
Dist Slackware Esm H88
Fresh binding packages have been released for Slackware to mitigate a significant security vulnerability. Further information regarding the updates can be found within.
New bind packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix a security issue

Summary

Here are the details from the Slackware 14.2 ChangeLog: patches/packages/bind-9.11.20-i586-1_slack14.2.txz: Upgraded. This update fixes a security issue: It was possible to trigger an INSIST in lib/dns/rbtdb.c:new_reference() with a particular zone content and query patterns. For more information, see: https://kb.isc.org/docs/cve-2020-8619 https://www.cve.org/CVERecord?id=CVE-2020-8619 (* Security fix *)

Where Find New Packages

Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated package for Slackware 14.0:
Updated package for Slackware x86_64 14.0:
Updated package for Slackware 14.1:
Updated package for Slackware x86_64 14.1:
Updated package for Slackware 14.2:
Updated package for Slackware x86_64 14.2:
Updated package for Slackware -current:
Updated package for Slackware x86_64 -current:

MD5 Signatures

Slackware 14.0 package: a27fd673dcc979eaf49bc7fd21f783aa bind-9.11.20-i486-1_slack14.0.txz
Slackware x86_64 14.0 package: 7c89a4bc798ed00503d33cce779dd789 bind-9.11.20-x86_64-1_slack14.0.txz
Slackware 14.1 package: 97fe233e50455cbf7d725ff79b2238b4 bind-9.11.20-i486-1_slack14.1.txz
Slackware x86_64 14.1 package: 77a1327539bf1d29d3162a8d06c8de0c bind-9.11.20-x86_64-1_slack14.1.txz
Slackware 14.2 package: d77e5359a135e726dbff1d06a0bc07af bind-9.11.20-i586-1_slack14.2.txz
Slackware x86_64 14.2 package: db4e73baa2ffc9f42e87a82e63142c99 bind-9.11.20-x86_64-1_slack14.2.txz
Slackware -current package: e39c999b1c0faddb5a8a86807bc4932e n/bind-9.16.4-i586-1.txz
Slackware x86_64 -current package: 0969b416563bd49108cf32074ab8843f n/bind-9.16.4-x86_64-1.txz

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the package as root: # upgradepkg bind-9.11.20-i586-1_slack14.2.txz Then, restart the name server: # /etc/rc.d/rc.bind restart

Related News

Your message here