Your message dated Wed, 06 Sep 2006 08:02:13 -0700
with message-id <[EMAIL PROTECTED]>
and subject line Bug#386245: fixed in bind9 1:9.3.2-P1-1
has caused the attached Bug report to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere. Please contact me immediately.)
Debian bug tracking system administrator
(administrator, Debian Bugs database)
--- Begin Message ---
Package: bind9
Version: 1:9.2.4-1
Severity: grave
Tags: security
Hello
I assume that the Security-Team has already been notified by vendor-sec
by this? Is a DSA in preperation?
http://www.isc.org/index.pl?/sw/bind/bind-security.php
* SIG Query Processing (CVE-2006-4095)
* Excessive Recursive Queries INSIST failure (CVE-2006-4096)
bye,
-christian-
--- End Message ---
--- Begin Message ---
Source: bind9
Source-Version: 1:9.3.2-P1-1
We believe that the bug you reported is fixed in the latest version of
bind9, which is due to be installed in the Debian FTP archive:
bind9-doc_9.3.2-P1-1_all.deb
to pool/main/b/bind9/bind9-doc_9.3.2-P1-1_all.deb
bind9-host_9.3.2-P1-1_i386.deb
to pool/main/b/bind9/bind9-host_9.3.2-P1-1_i386.deb
bind9_9.3.2-P1-1.diff.gz
to pool/main/b/bind9/bind9_9.3.2-P1-1.diff.gz
bind9_9.3.2-P1-1.dsc
to pool/main/b/bind9/bind9_9.3.2-P1-1.dsc
bind9_9.3.2-P1-1_i386.deb
to pool/main/b/bind9/bind9_9.3.2-P1-1_i386.deb
bind9_9.3.2-P1.orig.tar.gz
to pool/main/b/bind9/bind9_9.3.2-P1.orig.tar.gz
dnsutils_9.3.2-P1-1_i386.deb
to pool/main/b/bind9/dnsutils_9.3.2-P1-1_i386.deb
libbind-dev_9.3.2-P1-1_i386.deb
to pool/main/b/bind9/libbind-dev_9.3.2-P1-1_i386.deb
libbind9-0_9.3.2-P1-1_i386.deb
to pool/main/b/bind9/libbind9-0_9.3.2-P1-1_i386.deb
libdns21_9.3.2-P1-1_i386.deb
to pool/main/b/bind9/libdns21_9.3.2-P1-1_i386.deb
libisc11_9.3.2-P1-1_i386.deb
to pool/main/b/bind9/libisc11_9.3.2-P1-1_i386.deb
libisccc0_9.3.2-P1-1_i386.deb
to pool/main/b/bind9/libisccc0_9.3.2-P1-1_i386.deb
libisccfg1_9.3.2-P1-1_i386.deb
to pool/main/b/bind9/libisccfg1_9.3.2-P1-1_i386.deb
liblwres9_9.3.2-P1-1_i386.deb
to pool/main/b/bind9/liblwres9_9.3.2-P1-1_i386.deb
lwresd_9.3.2-P1-1_i386.deb
to pool/main/b/bind9/lwresd_9.3.2-P1-1_i386.deb
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [EMAIL PROTECTED],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
LaMont Jones <[EMAIL PROTECTED]> (supplier of updated bind9 package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [EMAIL PROTECTED])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Wed, 6 Sep 2006 08:07:13 -0600
Source: bind9
Binary: libisccc0 lwresd libbind9-0 bind9-doc dnsutils bind9 libbind-dev
bind9-host liblwres9 libisc11 libisccfg1 libdns21
Architecture: all i386 source
Version: 1:9.3.2-P1-1
Distribution: unstable
Urgency: high
Maintainer: LaMont Jones <[EMAIL PROTECTED]>
Changed-By: LaMont Jones <[EMAIL PROTECTED]>
Description:
bind9 - Internet Domain Name Server
bind9-doc - Documentation for BIND
bind9-host - Version of 'host' bundled with BIND 9.X
dnsutils - Clients provided with BIND
libbind-dev - Static Libraries and Headers used by BIND
libbind9-0 - BIND9 Shared Library used by BIND
libdns21 - DNS Shared Library used by BIND
libisc11 - ISC Shared Library used by BIND
libisccc0 - Command Channel Library used by BIND
libisccfg1 - Config File Handling Library used by BIND
liblwres9 - Lightweight Resolver Library used by BIND
lwresd - Lightweight Resolver Daemon
Closes: 239665 342957 356914 372203 386091 386224 386237 386245
Changes:
bind9 (1:9.3.2-P1-1) unstable; urgency=high
.
* New upstream, fixes CVE-2006-4095 and CVE-2006-4096.
Closes: #386237, #386245
* Drop gcc-3.4 [powerpc] dependency. Closes: #342957, #372203
* Add -fno-strict-aliasing for type-punned pointer aliasing issues
Closes: #386224
* Use getent in postinst instead of chown/chgrp. Closes: #386091, #239665
* Drop redundant update-rc.d calls. Closes: #356914
Files:
4300b25ce950ee43c46e528d44289d0d 107540 net standard
bind9-host_9.3.2-P1-1_i386.deb
493c9774c810fa2cb0fcb80e1e551f84 285196 net optional bind9_9.3.2-P1-1_i386.deb
49bef4db312e0df38a0d2b640143de26 199574 net optional lwresd_9.3.2-P1-1_i386.deb
6e68b98e1752ab306221c3fb6be5efde 105836 libs standard
liblwres9_9.3.2-P1-1_i386.deb
7caf939d49a12e93e8472ac9177c1951 977156 libdevel optional
libbind-dev_9.3.2-P1-1_i386.deb
895e86142c4cc0caefa60bfb6ce727ef 86899 net optional bind9_9.3.2-P1-1.diff.gz
a0b86647ef6a2d5f1e759112d08e2229 5303237 net optional
bind9_9.3.2-P1.orig.tar.gz
a23dfc2a091bb32e3cdadef1993c3633 174190 net standard
dnsutils_9.3.2-P1-1_i386.deb
b105b11854951e9b26f01a44256bd674 460296 libs standard
libdns21_9.3.2-P1-1_i386.deb
c543dd20c1ae994d9103ca7d9f929764 101562 libs optional
libisccfg1_9.3.2-P1-1_i386.deb
c705733a986b7cfde668a6253d2d192e 90226 libs standard
libbind9-0_9.3.2-P1-1_i386.deb
d9df445ee56b397ae0e3cb14716d6d9b 180174 doc optional
bind9-doc_9.3.2-P1-1_all.deb
c2d4b405b797499a4b4b7d2a464441d7 757 net optional bind9_9.3.2-P1-1.dsc
f9362f82a213092f53dc2861574835cf 90182 libs optional
libisccc0_9.3.2-P1-1_i386.deb
fd7db16323a70ccc366f3b54ba4d04ad 164274 libs standard
libisc11_9.3.2-P1-1_i386.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.2 (GNU/Linux)
iD8DBQFE/t+SzN/kmwoKyScRAo32AJ9jF5NbWD8TcJSQlfMjsIwpLE+zggCgm5Rv
q/9ztk5jcRIEwrvNV4l86i0=
=iFHS
-----END PGP SIGNATURE-----
--- End Message ---