Alerts This Week
Warning Icon 1 666
Alerts This Week
Warning Icon 1 666

SUSE Linux 11 SP2 LTSS 2015:0011-2 Important: Bind Denial Of Service

suse
Calendar Grey February 16, 2015
Dist Suse Esm H88
SUSE Linux enhancement addresses significant BIND vulnerabilities, improves security measures, and corrects functionality flaws from previous iterations.
An update that solves one vulnerability and has two fixes An update that solves one vulnerability and has two fixes An update that solves one vulnerability and has two fixes is now...

Summary

This update provides bind 9.9.6P1, which fixes a defect in delegation handling that could be exploited to crash named. (CVE-2014-8500, bsc#908994) Additionally, two non-security issues have been fixed: * Fix handling of TXT records in ldapdump. (bsc#743758) * Fix a multithread issue with IXFR. (bsc#882511) Security Issues: * CVE-2014-8500 Indications: Everybody should update. Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server 11 SP2 LTSS: zypper in -t patch slessp2-bind=10203 To bring your system up-to-date, use "zypper patch". Package List:

References

#743758 #882511 #908994

Cross- CVE-2014-8500

Affected Products:

SUSE Linux Enterprise Server 11 SP2 LTSS

https://www.suse.com/security/cve/CVE-2014-8500.html

https://bugzilla.suse.com/show_bug.cgi?id=743758

https://bugzilla.suse.com/show_bug.cgi?id=882511

https://bugzilla.suse.com/show_bug.cgi?id=908994

https://scc.suse.com:443/patches/

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2015:0011-2
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here