Opened 3 years ago
Closed 3 years ago
#15706 closed enhancement (fixed)
bind9 9.16.22 (Security Update)
Reported by: | Douglas R. Reno | Owned by: | Douglas R. Reno |
---|---|---|---|
Priority: | elevated | Milestone: | 11.1 |
Component: | BOOK | Version: | git |
Severity: | normal | Keywords: | |
Cc: |
Description ¶
New point version
Contains a fix for a security vulnerability that can impact resolver performance by sending repeated broken requests
Change History (4)
comment:1 by , 3 years ago
Owner: | changed from | to
---|---|
Status: | new → assigned |
comment:3 by , 3 years ago
Feature Changes The use of native PKCS#11 for Public-Key Cryptography in BIND 9 has been deprecated in favor of OpenSSL engine_pkcs11 from the OpenSC project. The --with-native-pkcs11 configuration option will be removed from the next major BIND 9 release. The option to use the engine_pkcs11 OpenSSL engine is already available in BIND 9; please see the ARM section on PKCS#11 for details. [GL #2691] named and named-checkconf now issue a warning when there is a single configured port in the query-source, transfer-source, notify-source, and parental-source, and/or in their respective IPv6 counterparts. [GL #2888] named and named-checkconf now return an error when the single configured port in the query-source, transfer-source, notify-source, parental-source, and/or their respective IPv6 counterparts clashes with the global listening port. This configuration is no longer supported as of BIND 9.16.0 but no error was reported, although sending UDP messages (such as notifies) would fail. [GL #2888] The masterfile-format format map has been marked as deprecated and will be removed in a future release. [GL #2882] The statically compiled DLZ drivers have been marked as deprecated in favor of dynamically loaded DLZ modules and will be removed in a future major release. [GL #2814] Bug Fixes When new IP addresses were added to the system during named startup, named failed to listen on TCP for the newly added interfaces. [GL #2852] Reloading a catalog zone that referenced a missing/deleted zone caused a crash. This has been fixed. [GL #2308]
comment:4 by , 3 years ago
Resolution: | → fixed |
---|---|
Status: | assigned → closed |
Fixed at 45befbbe63c7b48b0bda78ad347056ec8f0d619e
Security Advisory also published.
Note:
See TracTickets
for help on using tickets.