[packages/bind/AC-branch] up to 9.8.4-P2; fixes CVE-2013-2266

glen glen at pld-linux.org
Mon Apr 1 11:18:41 CEST 2013


commit c0062b21e6f8b1c48eeb61c9081a4c57cb120c16
Author: Elan Ruusamäe <glen at delfi.ee>
Date:   Mon Apr 1 11:36:25 2013 +0300

    up to 9.8.4-P2; fixes CVE-2013-2266
    
    regardless https://kb.isc.org/article/AA-00871 saying 9.8.4-P2 is still affected
    see also https://kb.isc.org/article/AA-00879
    
    bind-9.8.4-P2/CHANGES:
    3516. [security] Removed the check for regex.h in configure in order to disable
    regex syntax checking, as it exposes BIND to a critical flaw in libregex on
    some platforms. [RT #32688]

 bind.spec | 10 +++++-----
 1 file changed, 5 insertions(+), 5 deletions(-)
---
diff --git a/bind.spec b/bind.spec
index 152963f..caef483 100644
--- a/bind.spec
+++ b/bind.spec
@@ -20,10 +20,10 @@
 %bcond_without	epoll		# disable epoll support
 %endif
 
-%define		ver	9.8.3
+%define		ver	9.8.4
 %if 1
-%define		pverdot	.P3
-%define		pverdir	-P3
+%define		pverdot	.P2
+%define		pverdir	-P2
 %else
 %define		pverdot	%{nil}
 %define		pverdir	%{nil}
@@ -40,12 +40,12 @@ Summary(uk.UTF-8):	BIND - cервер системи доменних імен (
 Summary(zh_CN.UTF-8):	Internet 域名服务器
 Name:		bind
 Version:	%{ver}%{pverdot}
-Release:	2
+Release:	1
 Epoch:		7
 License:	BSD-like
 Group:		Networking/Daemons
 Source0:	ftp://ftp.isc.org/isc/bind9/%{ver}%{pverdir}/%{name}-%{ver}%{pverdir}.tar.gz
-# Source0-md5:	86f72cf1a99c4d7d1978c201a92fb3f3
+# Source0-md5:	73ea53c5e289ae7d5730a43f2a73c923
 Source1:	named.init
 Source2:	named.sysconfig
 Source3:	named.logrotate
================================================================

---- gitweb:

http://git.pld-linux.org/gitweb.cgi/packages/bind.git/commitdiff/c0062b21e6f8b1c48eeb61c9081a4c57cb120c16



More information about the pld-cvs-commit mailing list