-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 12 Feb 2024 17:28:03 +0100 Source: bind9 Binary: bind9 bind9-dbgsym bind9-dev bind9-dnsutils bind9-dnsutils-dbgsym bind9-host bind9-host-dbgsym bind9-libs bind9-libs-dbgsym bind9-utils bind9-utils-dbgsym Architecture: i386 Version: 1:9.18.24-1 Distribution: bookworm-security Urgency: high Maintainer: i386 Build Daemon (x86-grnet-01) Changed-By: Ondřej Surý Description: bind9 - Internet Domain Name Server bind9-dev - Static Libraries and Headers used by BIND 9 bind9-dnsutils - Clients provided with BIND 9 bind9-host - DNS Lookup Utility bind9-libs - Shared Libraries used by BIND 9 bind9-utils - Utilities for BIND 9 Changes: bind9 (1:9.18.24-1) bookworm-security; urgency=high . * New upstream version 9.18.24 - CVE-2023-4408: Parsing large DNS messages may cause excessive CPU load - CVE-2023-5517: Querying RFC 1918 reverse zones may cause an assertion failure when "nxdomain-redirect" is enabled - CVE-2023-5679: Enabling both DNS64 and serve-stale may cause an assertion failure during recursive resolution - CVE-2023-6516: Specific recursive query patterns may lead to an out-of-memory condition - CVE-2023-50387: KeyTrap - Extreme CPU consumption in DNSSEC validator - CVE-2023-50868: Preparing an NSEC3 closest encloser proof can exhaust CPU resources Checksums-Sha1: ff154844a8e079b1d24910304ffe818ff6d39726 573968 bind9-dbgsym_9.18.24-1_i386.deb 7c836adbadb6d502faab36a2b8f0549b5ab59412 515704 bind9-dev_9.18.24-1_i386.deb 5389e0deff1402b1af3996bd1490da774da9c56b 352424 bind9-dnsutils-dbgsym_9.18.24-1_i386.deb 211b6c649f08e958dc7b19b9776f4846f3a65341 408592 bind9-dnsutils_9.18.24-1_i386.deb f2df20bf899a86bbc1c01775c020d44c3ef57e5f 90604 bind9-host-dbgsym_9.18.24-1_i386.deb b774f37c783b2b88c0f16d13d71cb09f7f757606 306600 bind9-host_9.18.24-1_i386.deb 5f59e492eb846c627d4c34d37d049c5620450671 3041124 bind9-libs-dbgsym_9.18.24-1_i386.deb 63c48a2fd00dfb3ef437189d165827c13076746e 1488848 bind9-libs_9.18.24-1_i386.deb 79a8e5ad3884f73ea78979d7a80244f67e60c69f 351628 bind9-utils-dbgsym_9.18.24-1_i386.deb dba5a4302a34d72236889e5775e15ba4c313a0fe 409840 bind9-utils_9.18.24-1_i386.deb f7dd3e4242c5c668d5002d35012e7ca14ef1f9e6 10459 bind9_9.18.24-1_i386-buildd.buildinfo 9f75c9a12868682c1a5cbf4dcc2f116e6a5ff09f 506256 bind9_9.18.24-1_i386.deb Checksums-Sha256: 059f8b79f18fb37afc17e4eaa4c82fedfbf40b1c22c71ba979b9ace32b34ef73 573968 bind9-dbgsym_9.18.24-1_i386.deb 02eabc0886f6e1c151d69d8044b7b6d5ec054d5a45451ca2030aa4472d54813e 515704 bind9-dev_9.18.24-1_i386.deb c9dfdb4cae8d527084cb544346df28ea32de847740c872c4d9362422f09cfc8c 352424 bind9-dnsutils-dbgsym_9.18.24-1_i386.deb 567d5fca4a308f6632fe39175009ab58ac1141fbf17273ed99a1814986ccd1d0 408592 bind9-dnsutils_9.18.24-1_i386.deb 98eb267d679534c83df4774b044038cf6291c635a3dea4b7b8e6dd34bff288cd 90604 bind9-host-dbgsym_9.18.24-1_i386.deb ca48ee98612589885f1d92c3794237272317b56b3dd73bb716695f3dc664fffa 306600 bind9-host_9.18.24-1_i386.deb 86782310bd51dbf00230c07c7d022e862e6d2523638633750f1d8faeaa0f4235 3041124 bind9-libs-dbgsym_9.18.24-1_i386.deb 68ddc0ecedb36c4ac59654cfd91da97a7230e472cc5f7fd66b28ec2b5c95d3ae 1488848 bind9-libs_9.18.24-1_i386.deb 7aa0bc205b02e0580ea04663fe8e3a856dab42576763a291dae491b61739c90f 351628 bind9-utils-dbgsym_9.18.24-1_i386.deb c56f91806c072e2c6f45ce1b033ed0e4c9abcd2e7f3e688f234c39ce4bfe6be8 409840 bind9-utils_9.18.24-1_i386.deb 619f5a625ecde6841a4ad8b86441c4c10010399d997268dfd0ad2e3eed02f856 10459 bind9_9.18.24-1_i386-buildd.buildinfo f35deff28a26291be28f8e97f7ebac407a43392a0380180250b921df3631c077 506256 bind9_9.18.24-1_i386.deb Files: 6580394b2720bf5c7f33041809f730ba 573968 debug optional bind9-dbgsym_9.18.24-1_i386.deb a68d48881c1ab7286f8e41f6b1164341 515704 devel optional bind9-dev_9.18.24-1_i386.deb f9efbb51f860fb8ae652836e9e1799d3 352424 debug optional bind9-dnsutils-dbgsym_9.18.24-1_i386.deb 1d41659482955dad07d76627f8bce7f6 408592 net standard bind9-dnsutils_9.18.24-1_i386.deb a90f1e63a3534c9b968bf7538556886e 90604 debug optional bind9-host-dbgsym_9.18.24-1_i386.deb d1736d2b37e2e45bd8ee151c21badf80 306600 net standard bind9-host_9.18.24-1_i386.deb 7621f49539a7ac6c54db622d51fd8962 3041124 debug optional bind9-libs-dbgsym_9.18.24-1_i386.deb 32ad534337ae4f454d7f6e91f29e5260 1488848 libs standard bind9-libs_9.18.24-1_i386.deb b4a6f615f9bdc13cef4e953561d30359 351628 debug optional bind9-utils-dbgsym_9.18.24-1_i386.deb 6f0af99f1049930b03745507ed6e83c9 409840 net optional bind9-utils_9.18.24-1_i386.deb 86cd6fc5e4f30aa922659227c7bf60e8 10459 net optional bind9_9.18.24-1_i386-buildd.buildinfo 3337a34cd107f15874fca5c1b34c290b 506256 net optional bind9_9.18.24-1_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEqYm4ZPyuLwhx8Meo2VckltclZ4AFAmXKUvYACgkQ2Vckltcl Z4AfFBAA0VKzTFacIQC7qYeRECDa34YS0rVUfejiRy8cnQ64s9Yx/fK42kdD2bPz DY5c4egu9oFs/YOaaXXNwXOKB4A8Z3/C4tVNL2DcUkpx9MmkQcDYKCL/8b4YAKuP AtCi/VtNZhPbzVZOXxYRhHc1Xu3pbTAfNpg/4YC3Le1nijT9LTvjDSg8UytJS0zL Su1VHgqnh+TkljYWxIUN1CalkTjovmkOum0muQx427rhaasNknzLdNFU76COhoyn 5Y+6KD8QK8kr/kFwuue1HEV4IyFulf/9pTfAdb9j73ODdLPTAZ1+ZhGLSBD7HOld dflet8AgAMRv5p1zpJ2RVbij4jrZGLAyuEzQT15EflVk5AoruOInZTowKI33zMiU CYwBcxfjWQ2w3WeYZF5eyKHahAuRyt+liVmsvy3aoiuRy8hoYC7Us/Av8rk5aS/M aBCwHzaBfK6dVeK/afg3sPx+Al6Vd6pTQKy+uZQtzuRU/SB51bCSAZrd6w6AwGoG N72MwgKtDPJ7isf9C7scFtbcvEdrSW6GomsygX2EV7jqO7EGbufINPZElDZ13PzW aI173peFLIBjg89zJoAIXnOI9ZvxkJgm3l5INeG7o+//u1uhxSTnUyUMNuhggPZY 3HnOfHV6dN4re9tYJe8+EAibVbcGDHnhcWrL/2q4GKKnFM2ITNs= =HloW -----END PGP SIGNATURE-----