Format: 1.8 Date: Fri, 15 May 2020 08:03:11 -0400 Source: bind9 Binary: bind9 bind9-dnsutils bind9-host bind9-libs bind9-utils Architecture: i386 i386_translations Version: 1:9.16.1-0ubuntu2.1 Distribution: focal Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: bind9 - Internet Domain Name Server bind9-dnsutils - Clients provided with BIND 9 bind9-host - DNS Lookup Utility bind9-libs - Shared Libraries used by BIND 9 bind9-utils - Utilities for BIND 9 Changes: bind9 (1:9.16.1-0ubuntu2.1) focal-security; urgency=medium . * SECURITY UPDATE: BIND does not sufficiently limit the number of fetches performed when processing referrals - debian/patches/CVE-2020-8616.patch: further limit the number of queries that can be triggered from a request in lib/dns/adb.c, lib/dns/include/dns/adb.h, lib/dns/resolver.c. - CVE-2020-8616 * SECURITY UPDATE: A logic error in code which checks TSIG validity can be used to trigger an assertion failure in tsig.c - debian/patches/CVE-2020-8617.patch: don't allow replaying a TSIG BADTIME response in lib/dns/tsig.c. - CVE-2020-8617 Checksums-Sha1: bef60390f80c10727232a394913babfe5c5424f5 477552 bind9-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb 3c3e92738e070bcd9c49c52bb1f5f06c36d90366 272672 bind9-dnsutils-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb 83c753f78dfcb4df8a24963f0e697141cccc1015 140980 bind9-dnsutils_9.16.1-0ubuntu2.1_i386.deb d1514a6bc48d15dbcfaac54819a40ada0a751310 75000 bind9-host-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb 9f688da7e57753d0f4a146dbab4995e1d4dea31e 46336 bind9-host_9.16.1-0ubuntu2.1_i386.deb 6d979ce6c75af1af92c0917e08f6e2de17748c00 2957540 bind9-libs-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb 721e1f98c95eed9c01474c18c225cec8a45da853 1194320 bind9-libs_9.16.1-0ubuntu2.1_i386.deb 90d55694369e3848a654c8444ad642efd8bec038 256668 bind9-utils-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb 777949bf755241d7220be2f2165756910fc4fbd2 178248 bind9-utils_9.16.1-0ubuntu2.1_i386.deb d370a41b74e10ecce5758eaa4c44a33aa1570450 10844 bind9_9.16.1-0ubuntu2.1_i386.buildinfo 1db22cf8bd3f2b9cee60031ab67648749350ee13 243160 bind9_9.16.1-0ubuntu2.1_i386.deb 63a9bd8f475ce952330bab9d7b824c9bca336274 13067 bind9_9.16.1-0ubuntu2.1_i386_translations.tar.gz Checksums-Sha256: dfb41fa7033e72efd5e09bc11987e92ea6b9797bf4c0c704a874ac271a619106 477552 bind9-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb 2f48100822d57850460861d872ef0e4db9595aae17f420633d2725b70ab38a7b 272672 bind9-dnsutils-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb 422e98013fd4057363a5be214de3a40424bb5ab07b537974ddb205fd42c28d73 140980 bind9-dnsutils_9.16.1-0ubuntu2.1_i386.deb bc80624c5faf2bca32b4130d2fa8d61d18b36dc75128996f6517196660f4fb0e 75000 bind9-host-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb 90c729a0bade697dac339ef092799958b8d0b87f4f4a05e84cf5032890f99182 46336 bind9-host_9.16.1-0ubuntu2.1_i386.deb 6ee13deb8003ab79b5e50d76228644d0effd67bcc970e6958ac6ff83335165a2 2957540 bind9-libs-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb 1b8f88481b857af7cce249c2d110dc46a59184ab629936a00914788fba2bb11d 1194320 bind9-libs_9.16.1-0ubuntu2.1_i386.deb 5ee58534b5e236cc4dfc0e6704388c5499c3b58fd959b7cc555d33844a65a56b 256668 bind9-utils-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb e66120355b84e0e4656a0702d34cbb59514efc380cb819cb27d87dad3f27ab8a 178248 bind9-utils_9.16.1-0ubuntu2.1_i386.deb 317f2c2b917900906ab06756ec9f21894820e905b25190e03616ea7bc22934e4 10844 bind9_9.16.1-0ubuntu2.1_i386.buildinfo 3b8eb2dc68eb8aad3c53f79c45d68d006fea1959088ee7e1912fa731888f771e 243160 bind9_9.16.1-0ubuntu2.1_i386.deb 77215f80b03eb4fd1446e3777964d7423650ea98ab47bd844f8a47ed2cb90c09 13067 bind9_9.16.1-0ubuntu2.1_i386_translations.tar.gz Files: 4d36953e0d768fdb4c7568e2a76db623 477552 debug optional bind9-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb e3998c501351b1e4806227feaaa5d4b9 272672 debug optional bind9-dnsutils-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb 5a23a122480c7d3eb015326507063047 140980 net standard bind9-dnsutils_9.16.1-0ubuntu2.1_i386.deb 971f40823bbc60bc5e35b2b82da97484 75000 debug optional bind9-host-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb d572b81c199c467918f17873c3bafc1f 46336 net standard bind9-host_9.16.1-0ubuntu2.1_i386.deb e80c43ade88eacb7964ec25e6adca1b1 2957540 debug optional bind9-libs-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb a0af4022627081bc251f8ccfd647e10b 1194320 libs standard bind9-libs_9.16.1-0ubuntu2.1_i386.deb d4ec36760de69623f0c84aa50a3d53d3 256668 debug optional bind9-utils-dbgsym_9.16.1-0ubuntu2.1_i386.ddeb 1198f0e77ad4bdbb107afe64c6f35b4a 178248 net optional bind9-utils_9.16.1-0ubuntu2.1_i386.deb 8417a968cd96ea5e7dbb7a859ed9518e 10844 net optional bind9_9.16.1-0ubuntu2.1_i386.buildinfo 52e0d8a1422d0020c2d4f9b744d415bf 243160 net optional bind9_9.16.1-0ubuntu2.1_i386.deb 5231f813f4f54e25725c2229dda79b31 13067 raw-translations - bind9_9.16.1-0ubuntu2.1_i386_translations.tar.gz Original-Maintainer: Debian DNS Team