Release Info

Advisory: CLSA-2024:1727979720

OS: Ubuntu 16.04 ELS

Public date: 2024-10-03 14:22:02

Project: bind9

Version: 2:9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9

Errata link: https://errata.tuxcare.com/els_os/ubuntu16.04els/CLSA-2024-1727979720.html

Changelog

* SECURITY UPDATE: allocation of resources without limits or throttling - debian/patches/CVE-2024-1737-1: introduced new configurable limits that prevent the loading (into zones or into cache) of DNS resource records (RRs) that exceed them - debian/patches/CVE-2024-1737-2: add environment variable DNS_RDATASET_MAX_RECORDS, DNS_RBTDB_MAX_RTYPES to override hardcoded limits DDNS_RDATASET_MAX_RECORDS and DDNS_RBTDB_MAX_RTYPES. Add masterformat tests for testing RRsets.

Update

Update command: apt-get update apt-get --only-upgrade install bind9*

Packages list

bind9_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb bind9-doc_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_all.deb bind9-host_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb bind9utils_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb dnsutils_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb host_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_all.deb libbind-dev_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb libbind-export-dev_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb libbind9-140_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb libdns-export162_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb libdns162_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb libirs-export141_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb libirs141_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb libisc-export160_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb libisc160_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb libisccc-export140_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb libisccc140_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb libisccfg-export140_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb libisccfg140_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb liblwres141_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb lwresd_9.10.3.dfsg.P4-8ubuntu1.19+tuxcare.els9_amd64.deb

CVEs

CVE-2024-1737