Release Info

Advisory: CLSA-2024:1709547568

OS: AlmaLinux 9.2 ESU

Public date: 2024-03-04 05:19:31

Project: bind

Version: 9.16.23-11.el9_2.2.tuxcare.els1

Errata link: https://errata.tuxcare.com/els_os/almalinux9.2esu/CLSA-2024-1709547568.html

Changelog

- CVE-2023-50387: Resolved CPU exhaustion from specially crafted DNSSEC-signed zone responses - CVE-2023-50868: Resolved CPU exhaustion from DNSSEC-signed zones using NSEC3

Update

Update command: dnf update bind*

Packages list

bind-9.16.23-11.el9_2.2.tuxcare.els1.x86_64.rpm bind-chroot-9.16.23-11.el9_2.2.tuxcare.els1.x86_64.rpm bind-devel-9.16.23-11.el9_2.2.tuxcare.els1.i686.rpm bind-devel-9.16.23-11.el9_2.2.tuxcare.els1.x86_64.rpm bind-dnssec-doc-9.16.23-11.el9_2.2.tuxcare.els1.noarch.rpm bind-dnssec-utils-9.16.23-11.el9_2.2.tuxcare.els1.x86_64.rpm bind-doc-9.16.23-11.el9_2.2.tuxcare.els1.noarch.rpm bind-libs-9.16.23-11.el9_2.2.tuxcare.els1.i686.rpm bind-libs-9.16.23-11.el9_2.2.tuxcare.els1.x86_64.rpm bind-license-9.16.23-11.el9_2.2.tuxcare.els1.noarch.rpm bind-utils-9.16.23-11.el9_2.2.tuxcare.els1.x86_64.rpm python3-bind-9.16.23-11.el9_2.2.tuxcare.els1.noarch.rpm

CVEs

CVE-2023-50387
CVE-2023-50868