-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 21 Jun 2023 20:31:51 +0200 Source: bind9 Binary: bind9 bind9-dbgsym bind9-dev bind9-dnsutils bind9-dnsutils-dbgsym bind9-host bind9-host-dbgsym bind9-libs bind9-libs-dbgsym bind9-utils bind9-utils-dbgsym Architecture: i386 Version: 1:9.16.42-1~deb11u1 Distribution: bullseye-security Urgency: high Maintainer: i386 Build Daemon (x86-grnet-01) Changed-By: Ondřej Surý Description: bind9 - Internet Domain Name Server bind9-dev - Static Libraries and Headers used by BIND 9 bind9-dnsutils - Clients provided with BIND 9 bind9-host - DNS Lookup Utility bind9-libs - Shared Libraries used by BIND 9 bind9-utils - Utilities for BIND 9 Changes: bind9 (1:9.16.42-1~deb11u1) bullseye-security; urgency=high . * Update the upstream signing keys * New upstream version 9.16.42 - CVE-2023-2828: The overmem cleaning process has been improved, to prevent the cache from significantly exceeding the configured max-cache-size limit. - CVE-2023-2911: A query that prioritizes stale data over lookup triggers a fetch to refresh the stale data in cache. If the fetch is aborted for exceeding the recursion quota, it was possible for named to enter an infinite callback loop and crash due to stack overflow. This has been fixed. Checksums-Sha1: 22137893b4f84d64c9d81407287564933aad7a1d 448612 bind9-dbgsym_9.16.42-1~deb11u1_i386.deb 855c754e11df7c0b73b50d0eaa15e00ee3c50147 1924096 bind9-dev_9.16.42-1~deb11u1_i386.deb 118a59b00cfddf27aafa5254bb0456a367dfb44e 251232 bind9-dnsutils-dbgsym_9.16.42-1~deb11u1_i386.deb 64725de628457bc8bbd07588f599ac336a6f9958 412320 bind9-dnsutils_9.16.42-1~deb11u1_i386.deb a01dd09e552b33015060026bcca37b708c1fbf43 70380 bind9-host-dbgsym_9.16.42-1~deb11u1_i386.deb 926eef5e5475c7d2ea1e385f263a05a26a3def0b 312820 bind9-host_9.16.42-1~deb11u1_i386.deb e7090080fa945269da89e278aea02a7d6cbab82f 2796140 bind9-libs-dbgsym_9.16.42-1~deb11u1_i386.deb 22e78018cc838c170606672ddd78ed52db57e92b 1507456 bind9-libs_9.16.42-1~deb11u1_i386.deb 8a1efcc13a4373620657ce2daffb7042161c9e18 231628 bind9-utils-dbgsym_9.16.42-1~deb11u1_i386.deb d6553b62f4c755a10214e44c53960fb55e5a3d20 440752 bind9-utils_9.16.42-1~deb11u1_i386.deb 5064f8874c4593f713e220770e2d79fede3ed8fe 10769 bind9_9.16.42-1~deb11u1_i386-buildd.buildinfo 309c442f5b1a7d1df8bfc944f20ac2e57cd4248a 511952 bind9_9.16.42-1~deb11u1_i386.deb Checksums-Sha256: 4c6614647de07567eef094c237a7e338e3052b572d4d35b0a4cb615d4f3c9f9d 448612 bind9-dbgsym_9.16.42-1~deb11u1_i386.deb 1f349a715961fc034c4256c4d0fb2cfe816027e401bad0349e8a4df506fc3b34 1924096 bind9-dev_9.16.42-1~deb11u1_i386.deb cd017c52c14d6e08b416a96e78b8235a680c791cad3bea3860ef196ad14aec77 251232 bind9-dnsutils-dbgsym_9.16.42-1~deb11u1_i386.deb ddb29b872053291a21b5394de797495089c26b3aa1a78f6e052be69058a55010 412320 bind9-dnsutils_9.16.42-1~deb11u1_i386.deb 96b9f38c935081a4574e0b09d8f905eb66b5e3896451fa95e13eef653e14db67 70380 bind9-host-dbgsym_9.16.42-1~deb11u1_i386.deb 25633ec3719830bae3a9362ef2d8341d703d894a00a1262c11e4db6a79628753 312820 bind9-host_9.16.42-1~deb11u1_i386.deb acc92b5f6cd51cde324fce22c1f398d588153c22b281b97b1419a0f37d870973 2796140 bind9-libs-dbgsym_9.16.42-1~deb11u1_i386.deb 1e623f9b068cf704bceeac3803c8677b99a572c599622eddf2268398eb2f7e62 1507456 bind9-libs_9.16.42-1~deb11u1_i386.deb 5f3fcb85909ebddfc4eeedb0ce3f0259baecb017400f40e4bc200911dcf4bcd6 231628 bind9-utils-dbgsym_9.16.42-1~deb11u1_i386.deb 953fbd5e13bc568960abc169e6f93a33e9182673dc42223a03adfc974935f636 440752 bind9-utils_9.16.42-1~deb11u1_i386.deb 896ec0b954e9788fe3c82be6f86a998d5cb9d31fc2caccadeaccdae26d7e3820 10769 bind9_9.16.42-1~deb11u1_i386-buildd.buildinfo 297f292c49384a1bc0e0e115037e3cc9751dcab08b1d0428fe7c1217c82f6983 511952 bind9_9.16.42-1~deb11u1_i386.deb Files: 9d78e9709f8e525b91f94ff026c1d272 448612 debug optional bind9-dbgsym_9.16.42-1~deb11u1_i386.deb 4d4b84a0cdb8732a9710751a0fe6f7c9 1924096 devel optional bind9-dev_9.16.42-1~deb11u1_i386.deb f9cd1ba9ae011b6e14ab9c24481604ac 251232 debug optional bind9-dnsutils-dbgsym_9.16.42-1~deb11u1_i386.deb d764809cea03e42bc6c046ecc62aa5b3 412320 net standard bind9-dnsutils_9.16.42-1~deb11u1_i386.deb 3bb0158318cacec634a4244d9d968fad 70380 debug optional bind9-host-dbgsym_9.16.42-1~deb11u1_i386.deb e14990edccb2952a699b99bc5ea8a726 312820 net standard bind9-host_9.16.42-1~deb11u1_i386.deb cc638724c7c8d198cafd9754db024d4a 2796140 debug optional bind9-libs-dbgsym_9.16.42-1~deb11u1_i386.deb df0f29cbdc9a5b38378d76ddfaa29c64 1507456 libs standard bind9-libs_9.16.42-1~deb11u1_i386.deb c97e2ed27bc4ba9abf2a1010c1ac42fd 231628 debug optional bind9-utils-dbgsym_9.16.42-1~deb11u1_i386.deb 06df3b5213ae49849d3e7b294bd5e6e7 440752 net optional bind9-utils_9.16.42-1~deb11u1_i386.deb 10d02c16c9523bce95368087355064fc 10769 net optional bind9_9.16.42-1~deb11u1_i386-buildd.buildinfo d150a38d3748646c581981fcec70c299 511952 net optional bind9_9.16.42-1~deb11u1_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE7bJOCbihllHz5a8G6bGbnoZY/NwFAmSTTNkACgkQ6bGbnoZY /Nw89Q//Vef+eK4qVWW4CGef8i58YgLMxYsG8mPbGTlpFfd1e6bYr9eokGcY1Qwy Jd/AeA6w4nrSwjz2abuR8Fq+IOwojoSEluFo7s0beFKBro3bYS6Oigl3VR0yivy1 8GqtYSrQpQJ9d7jloRowaod0aQENkCIp6EDR47443R9pE3K28Qm+TKKD6t6hrqkD fXesWiIygb+6n3qRD/tdkvXvDNS/6cprSozSaB2LpRStUcF5DC6hU6dECURlY4Xb hqFJTfBez+MnX0lPIs1k/FjNs5gmqdJrAqmSg7YczlC678l340CzaNOgkptYRQkJ cbmFVHPpGtERv5UM5CNEVxFmG/I/JZyQ3nd4Oef52s1ADEIdC2mKLp+ZN+BUBmOA wBlbrWCsyoRv1g9T4lNvW8AmL6oOf6F5SjUjOxAEMYqsL1YNikdmBJN7b1c8eW/j ucWF8yQgvCg0x/0yC/pTOA80yPuP8RodTStz2wFMe+hzX45DQp4q6ghn9AukcKTC nrAa1RsOyIn2ngYxmSkBKKQk1Ca2XEXzIC4+r6HFJA+GuuX0fVLf0HCtiJrr+dhg +8vJ4T+uMm//xqgaO8QYL1zKDTu6sHtoEnL4R+UZ8IIQrh+UYhepX/HfVwUrdE9q bYKNqqgBsarKLI9p64A8fab08TfWhKZeqgFNHzqbb10v/YxeevU= =eZcm -----END PGP SIGNATURE-----