unbound 1.9.4-2ubuntu1.1 source package in Ubuntu

Changelog

unbound (1.9.4-2ubuntu1.1) focal-security; urgency=medium

  * SECURITY UPDATE: amplification attack and denial of service
    - debian/patches/CVE-2020-1226x.patch: fix iterator logic in
      iterator/iter_delegpt.c, iterator/iter_delegpt.h,
      iterator/iter_scrub.c, iterator/iter_utils.c, iterator/iterator.c,
      iterator/iterator.h, services/cache/dns.c, util/data/dname.c,
      util/data/msgparse.c.
    - CVE-2020-12263
    - CVE-2020-12264

 -- Marc Deslauriers <email address hidden>  Fri, 22 May 2020 08:51:12 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Focal
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
net
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
unbound_1.9.4.orig.tar.gz 5.4 MiB 3d3e25fb224025f0e732c7970e5676f53fd1764c16d6a01be073a13e42954bb0
unbound_1.9.4-2ubuntu1.1.debian.tar.xz 26.8 KiB 998ce822fbbfbdabcfe2562b67c6d176f254cceef92638df4d700d561be7509b
unbound_1.9.4-2ubuntu1.1.dsc 3.0 KiB 76528769e9a8f855a11f822a0098ae627c6df748340b9c53a4426b2b783e35d6

View changes file

Binary packages built by this source

libunbound-dev: static library, header files, and docs for libunbound

 Static library, header files, and documentation for libunbound.
 .
 libunbound performs and validates DNS lookups; it can be used to convert
 hostnames to IP addresses and back and obtain other information from the
 DNS. Cryptographic validation of results is performed with DNSSEC.

libunbound8: library implementing DNS resolution and validation

 libunbound performs and validates DNS lookups; it can be used to convert
 hostnames to IP addresses and back and obtain other information from the
 DNS. Cryptographic validation of results is performed with DNSSEC.

libunbound8-dbgsym: debug symbols for libunbound8
python-unbound: library implementing DNS resolution and validation (Python bindings)

 Python extension module for libunbound.
 .
 libunbound performs and validates DNS lookups; it can be used to convert
 hostnames to IP addresses and back and obtain other information from the
 DNS. Cryptographic validation of results is performed with DNSSEC.

python-unbound-dbgsym: debug symbols for python-unbound
python3-unbound: library implementing DNS resolution and validation (Python3 bindings)

 Python3 extension module for libunbound.
 .
 libunbound performs and validates DNS lookups; it can be used to convert
 hostnames to IP addresses and back and obtain other information from the
 DNS. Cryptographic validation of results is performed with DNSSEC.

python3-unbound-dbgsym: debug symbols for python3-unbound
unbound: validating, recursive, caching DNS resolver

 Unbound is a recursive-only caching DNS server which can perform DNSSEC
 validation of results. It implements only a minimal amount of authoritative
 service to prevent leakage to the root nameservers: forward lookups for
 localhost, reverse for 127.0.0.1 and ::1, and NXDOMAIN for zones served by
 AS112. Stub and forward zones are supported.
 .
 This package contains the unbound daemon.

unbound-anchor: utility to securely fetch the root DNS trust anchor

 unbound-anchor is a utility which securely fetches or updates the root DNS
 zone trust anchor. A copy of the current root anchor and root update
 certificate is embedded in unbound-anchor. RFC 5011 trust anchor tracking is
 performed, with fallback to an SSL fetch if this fails.

unbound-anchor-dbgsym: debug symbols for unbound-anchor
unbound-dbgsym: debug symbols for unbound
unbound-host: reimplementation of the 'host' command

 This package provides the 'unbound-host' program that is bundled with the
 Unbound domain name server. This version differs from the one provided in the
 package called host, which is from NIKHEF, and bind9-host, which is from ISC,
 and has a similar but different set of features and options.

unbound-host-dbgsym: debug symbols for unbound-host