Release Info

Advisory: CLSA-2024:1709562163

OS: Ubuntu 16.04 ELS

Public date: 2024-03-04 09:22:46

Project: bind9

Version: 2:9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7

Errata link: https://errata.tuxcare.com/els_os/ubuntu16.04els/CLSA-2024-1709562163.html

Changelog

* SECURITY UPDATE: KeyTrap denial of service vulnerability - debian/patches/CVE-2023-50387-20230-50868.patch: Fix DNSSEC verification complexity issue by updating verification function signatures. - debian/patches/CVE-2023-50387-fix-1.patch: Allow the original CVE-2023-50387 patch to work if multiple threads support is disabled. - debian/patches/CVE-2023-50387-fix-2.patch: Fix a leak. - CVE-2023-50387 - CVE-2023-50868

Update

Update command: apt-get update apt-get --only-upgrade install bind9*

Packages list

bind9_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb bind9-doc_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_all.deb bind9-host_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb bind9utils_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb dnsutils_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb host_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_all.deb libbind-dev_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb libbind-export-dev_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb libbind9-140_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb libdns-export162_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb libdns162_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb libirs-export141_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb libirs141_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb libisc-export160_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb libisc160_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb libisccc-export140_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb libisccc140_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb libisccfg-export140_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb libisccfg140_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb liblwres141_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb lwresd_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els7_amd64.deb

CVEs

CVE-2023-50868
CVE-2023-50387