-
bind9 (1:9.19.14-1) experimental; urgency=medium
* New upstream version 9.19.14
-- Ondřej Surý <email address hidden> Wed, 21 Jun 2023 21:00:01 +0200
-
bind9 (1:9.19.11-1) experimental; urgency=medium
* New upstream version 9.19.11
* Update the d/bind9-dev.install, d/bind9.install and d/not-installed
after library squash
-- Ondřej Surý <email address hidden> Wed, 15 Mar 2023 18:27:20 +0100
-
bind9 (1:9.19.10-1) experimental; urgency=medium
* New upstream version 9.19.10
* Drop libtool-bin from B-D (Closes: #1022968)
-- Ondřej Surý <email address hidden> Fri, 10 Feb 2023 15:16:29 +0100
-
bind9 (1:9.19.6-2) experimental; urgency=medium
* Use systemd notify for service readyness check (Closes: #994696)
-- Bernhard Schmidt <email address hidden> Sun, 30 Oct 2022 00:14:05 +0200
-
bind9 (1:9.19.6-1) experimental; urgency=medium
* New upstream version 9.19.6
-- Ondřej Surý <email address hidden> Wed, 19 Oct 2022 15:06:31 +0200
-
bind9 (1:9.16.1-1) experimental; urgency=medium
* New upstream version 9.16.1
-- Ondřej Surý <email address hidden> Fri, 20 Mar 2020 13:59:34 +0100
-
bind9 (1:9.16.0-1) experimental; urgency=medium
* Change the branch to 9.16
* New upstream version 9.16.0
-- Ondřej Surý <email address hidden> Thu, 20 Feb 2020 10:54:34 +0100
-
bind9 (1:9.15.7-1) experimental; urgency=medium
* Add libuv1-dev, libcmocka-dev, libedit-dev and zlib1g-dev to B-D
* Update d/watch to use tar.xz
* New upstream version 9.15.7
-- Ondřej Surý <email address hidden> Thu, 19 Dec 2019 09:40:52 +0100
-
bind9 (1:9.11.8+dfsg-1) experimental; urgency=medium
* New upstream version 9.11.8+dfsg
* Rebase patches for BIND 9.11.8
* AppArmor: Allow /var/tmp/krb5_* (owner-only) for Samba AD DLZ.
Thanks to Steven Monai (Closes: 928398)
* Enable readline support in dnsutils (nslookup and nsupdate)
-- Bernhard Schmidt <email address hidden> Sun, 07 Jul 2019 21:38:14 +0200
-
bind9 (1:9.11.6+dfsg-1) experimental; urgency=medium
[ Ondřej Surý ]
* New upstream version 9.11.6+dfsg (Closes: #923984)
* Update d/gbp.conf for DEP-14
* Fix the checkapi script
* Bump libdns SOVERSION from 1104 to 1105
* Update libdns1105 symbols
[ Bernhard Schmidt]
* Add missing pkg-config build-dep
-- Bernhard Schmidt <email address hidden> Wed, 20 Mar 2019 11:55:34 +0100
-
bind9 (1:9.10.4-P5-1) experimental; urgency=medium
* New upstream: 9.10.4-P5
- Fixes CVE-2016-2775: crash in lwresd due to a long query name
(closes: #831796).
- Fixes CVE-2016-2776: maliciously crafted query can cause named to crash
(closes: #839010).
- Fixes CVE-2016-6170: improper zone size limits (closes: #830810).
- Fixes CVE-2016-8864: incorrect handling of a DNAME record can cause
named to crash (closes: #842858).
- Fixes CVE-2016-9131: maliciously crafted response to an ANY query can
cause named to crash (closes: #851065).
- Fixes CVE-2016-9147: query with contradictory DNSSEC information can
cause named to crash (closes: #851063).
- Fixes CVE-2016-9444: maliciously formed DNSSEC Delegation Signer (DS)
record can cause named to crash (closes: #851062).
* Openssl 1.1 is not yet supported, so build with openssl 1.0 for now
(closes: #828082).
* Update debian/copyright to format 1.0.
* Add upstream signing key.
-- Michael Gilbert <email address hidden> Sun, 15 Jan 2017 06:04:12 +0000
-
bind9 (1:9.10.3.dfsg.P4-5) experimental; urgency=medium
* Drop dead code in bind9.preinst.
* move from /var/run to /run for policy.
-- LaMont Jones <email address hidden> Sat, 19 Mar 2016 19:52:04 -0600
-
bind9 (1:9.10.3.dfsg.P2-5) experimental; urgency=medium
[Timo Aaltonen]
* Sync 30_dynamic_db.diff from Fedora.
* rules: Backup some files which dh_autoreconf_clean would remove, restore
on clean.
[Jamie Strandboge]
* apparmor: use @{PROC} instead of /proc, allow read on
sys.net.ipv4.ip_local_port_range. LP: #1552441
[LaMont Jones]
* Return nanosecond-precise time for files, so that we more-correctly know
when we can skip loading a zonefile. (Bug introduced 9.9.3b2)
-- LaMont Jones <email address hidden> Thu, 03 Mar 2016 18:17:06 -0700
-
bind9 (1:9.10.3.dfsg.P2-4) experimental; urgency=medium
[Matthias Klose]
* Fix .so symlinks.
* libbind-dev: Depend on libirs141.
* For the udeb's, use a separate build with a reduced feature set, drop the
name difference, and do both builds in a separate directory.
[Filip Pytloun]
* Add apparmor rules needed by freeipa-server. Closes: #814314
[LaMont Jones]
* Do not deliver libraries (left in /lib) as part of bind9. LP: #1547052
* clean up library path for libirs.
-- LaMont Jones <email address hidden> Fri, 19 Feb 2016 14:26:08 -0700
-
bind9 (1:9.10.3.dfsg.P2-3) experimental; urgency=medium
[Marc Deslauriers]
* SECURITY UPDATE: denial of service via string formatting operations.
CVE-2015-8704
[Matthias Klose]
* Add multiarch support. Closes: #802584
* Standars cleanup.
[LaMont Jones]
* Properly finish converting to 3.0 (quilt) format.
* Drop geoip_acl patch temporarily while we evaluate the upstream geoip
changes.
* Prechroot init appears to have been taken upstream.
-- LaMont Jones <email address hidden> Wed, 17 Feb 2016 10:34:24 -0700
-
bind9 (1:9.10.0.dfsg~rc2-1) experimental; urgency=low
* New upstream version
* new shared library: libirs
* do not call dns_lib_init2 twice
-- LaMont Jones <email address hidden> Wed, 30 Apr 2014 09:47:09 -0600
-
bind9 (1:9.9.5.dfsg-1) experimental; urgency=low
[Internet Software Consortium, Inc]
* New upstream version: 9.9.5 Closes: #735190
[Martin Nagy]
* dynamic loading of database backends. See:
http://pkgs.fedoraproject.org/cgit/bind.git/tree/bind-96-dyndb.patch.
Closes: #722669
[LaMont Jones]
* fix sonames
* merge ubuntu changes
* Deliver dns/rrl.h. Closes: #724844
* rules tweak to make backports to pre-dh-systemd releases easier
-- LaMont Jones <email address hidden> Tue, 11 Feb 2014 09:16:05 -0700
-
bind9 (1:9.9.2.dfsg.P1-2) experimental; urgency=low
[Michael Gilbert]
* Use /var/lib/bind for state file. Closes: #689332
[LaMont Jones]
* zone transfers now involve link(), update the apparmor profile
* Update db.root with new IP for D.root-servers.net. Closes: #697352
* re-drop dlzexternal test
* Reduce log level for "sucessfully validated after lower casing" dnssec
based on mail from Mark Andrews. Closes: #697681
* remove /var/lib/bind/bind9-default.md5sum in postrm
* remove /etc/bind/named.conf.options on purge. Closes: #668801
[Sebastian Wiesinger]
* Build and deliver dnssec-checkds and dnssec-verify in bind9utils
-- LaMont Jones <email address hidden> Wed, 09 Jan 2013 10:09:40 -0700
-
bind9 (1:9.9.2.dfsg.P1-1) experimental; urgency=low
* Named could die on specific queries with dns64 enabled.
[Addressed in change #3388 for BIND 9.8.5 and 9.9.3.]
CVE-2012-5688 Closes: #695192
-- LaMont Jones <email address hidden> Wed, 05 Dec 2012 05:27:18 -0700
-
bind9 (1:9.9.2.dfsg-1) experimental; urgency=low
[Matthew Grant]
* Turn off dlopen as it was causing test compile failures.
* Add missing library .postrm files for debhelper
[LaMont Jones]
* New upstream version 9.9.2
* soname fixes
-- LaMont Jones <email address hidden> Thu, 01 Nov 2012 08:59:57 -0600
-
bind9 (1:9.7.0.dfsg~b3-2) experimental; urgency=low
* merge changes from 9.6.1.dfsg.P2-1
* meta: drop verisoned depends from library packages, for less upgrade pain
* apparmor: allow named to create /var/run/named/session.key
-- LaMont Jones <email address hidden> Sun, 06 Dec 2009 11:46:17 -0700
-
bind9 (1:9.7.0.dfsg~b3-1) experimental; urgency=low
[Internet Software Consortium, Inc]
* 9.7.0b3
[LaMont Jones]
* Merge remote branch 'origin/master'
* soname changes
-- LaMont Jones <email address hidden> Mon, 30 Nov 2009 21:07:58 -0700
-
bind9 (1:9.7.0.dfsg~b2-2) experimental; urgency=low
* dnsutils: remove pre-sarge dpkg-divert calls in postinst
-- LaMont Jones <email address hidden> Tue, 17 Nov 2009 22:42:40 -0600
-
bind9 (1:9.6.0.dfsg.P1-1) experimental; urgency=low
[Michael Milligan]
* Add min-cache-ttl and min-ncache-ttl keywords
[LaMont Jones]
* Fix merge errors from 9.6.0.dfsg.P1-0
-- LaMont Jones <email address hidden> Fri, 20 Mar 2009 15:50:50 -0600