Your message dated Sun, 27 Jan 2008 16:03:31 +0100
with message-id <[EMAIL PROTECTED]>
and subject line Bug#462783: bind9: CVE-2008-0122
has caused the attached Bug report to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere. Please contact me immediately.)
Debian bug tracking system administrator
(administrator, Debian Bugs database)
--- Begin Message ---
Package: bind9
Version: 1:9.4.2-3
Severity: grave
Justification: security hole
Tags: security
Hi,
here is the problem:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0122
http://www.isc.org/index.pl?/sw/bind/bind-security.php
-- System Information:
Debian Release: lenny/sid
APT prefers unstable
APT policy: (500, 'unstable'), (1, 'experimental')
Architecture: i386 (i686)
Kernel: Linux 2.6.23-1-686 (SMP w/1 CPU core)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) (ignored: LC_ALL
set to en_US.UTF-8)
Shell: /bin/sh linked to /bin/bash
Versions of packages bind9 depends on:
ii adduser 3.105 add and remove users and groups
ii libbind9-30 1:9.4.2-3 BIND9 Shared Library used by BIND
ii libc6 2.7-6 GNU C Library: Shared libraries
ii libdns32 1:9.4.2-3 DNS Shared Library used by BIND
ii libisc32 1:9.4.2-3 ISC Shared Library used by BIND
ii libisccc30 1:9.4.2-3 Command Channel Library used by BI
ii libisccfg30 1:9.4.2-3 Config File Handling Library used
ii liblwres30 1:9.4.2-3 Lightweight Resolver Library used
ii libssl0.9.8 0.9.8g-4 SSL shared libraries
ii lsb-base 3.1-24 Linux Standard Base 3.1 init scrip
ii netbase 4.30 Basic TCP/IP networking system
bind9 recommends no packages.
-- no debconf information
--- End Message ---
--- Begin Message ---
Hi,
* Laurent Bonnaud <[EMAIL PROTECTED]> [2008-01-27 15:19]:
[...]
> http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0122
> http://www.isc.org/index.pl?/sw/bind/bind-security.php
Please check the security tracker for the CVE id before
reporting security bugs.
Have a look at:
http://security-tracker.debian.net/tracker/CVE-2008-0122
bind9 in Debian is not affected by this problem thus closing
this bug.
Kind regards
Nico
--
Nico Golde - http://www.ngolde.de - [EMAIL PROTECTED] - GPG: 0x73647CFF
For security reasons, all text in this mail is double-rot13 encrypted.
pgpC6IV0ioaH6.pgp
Description: PGP signature
--- End Message ---