Описание
ELSA-2014-1244: bind97 security and bug fix update (MODERATE)
[32:9.7.0-21.P2]
- Fix CVE-2014-0591
[32:9.7.0-20.P2]
- Fix init script to not unmount filesystem when ROOTDIR is empty (#1059118)
[32:9.7.0-19.P2]
- fix for CVE-2013-4854
[32:9.7.0-18.P2]
- fix CVE-2013-2266
Обновленные пакеты
Oracle Linux 5
Oracle Linux ia64
bind97
9.7.0-21.P2.el5
bind97-chroot
9.7.0-21.P2.el5
bind97-devel
9.7.0-21.P2.el5
bind97-libs
9.7.0-21.P2.el5
bind97-utils
9.7.0-21.P2.el5
Oracle Linux x86_64
bind97
9.7.0-21.P2.el5
bind97-chroot
9.7.0-21.P2.el5
bind97-devel
9.7.0-21.P2.el5
bind97-libs
9.7.0-21.P2.el5
bind97-utils
9.7.0-21.P2.el5
Oracle Linux i386
bind97
9.7.0-21.P2.el5
bind97-chroot
9.7.0-21.P2.el5
bind97-devel
9.7.0-21.P2.el5
bind97-libs
9.7.0-21.P2.el5
bind97-utils
9.7.0-21.P2.el5
Связанные CVE
Связанные уязвимости
The query_findclosestnsec3 function in query.c in named in ISC BIND 9.6, 9.7, and 9.8 before 9.8.6-P2 and 9.9 before 9.9.4-P2, and 9.6-ESV before 9.6-ESV-R10-P2, allows remote attackers to cause a denial of service (INSIST assertion failure and daemon exit) via a crafted DNS query to an authoritative nameserver that uses the NSEC3 signing feature.
The query_findclosestnsec3 function in query.c in named in ISC BIND 9.6, 9.7, and 9.8 before 9.8.6-P2 and 9.9 before 9.9.4-P2, and 9.6-ESV before 9.6-ESV-R10-P2, allows remote attackers to cause a denial of service (INSIST assertion failure and daemon exit) via a crafted DNS query to an authoritative nameserver that uses the NSEC3 signing feature.
The query_findclosestnsec3 function in query.c in named in ISC BIND 9.6, 9.7, and 9.8 before 9.8.6-P2 and 9.9 before 9.9.4-P2, and 9.6-ESV before 9.6-ESV-R10-P2, allows remote attackers to cause a denial of service (INSIST assertion failure and daemon exit) via a crafted DNS query to an authoritative nameserver that uses the NSEC3 signing feature.
The query_findclosestnsec3 function in query.c in named in ISC BIND 9. ...
The query_findclosestnsec3 function in query.c in named in ISC BIND 9.6, 9.7, and 9.8 before 9.8.6-P2 and 9.9 before 9.9.4-P2, and 9.6-ESV before 9.6-ESV-R10-P2, allows remote attackers to cause a denial of service (INSIST assertion failure and daemon exit) via a crafted DNS query to an authoritative nameserver that uses the NSEC3 signing feature.