-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 12 Feb 2024 17:28:03 +0100 Source: bind9 Binary: bind9 bind9-dbgsym bind9-dev bind9-dnsutils bind9-dnsutils-dbgsym bind9-host bind9-host-dbgsym bind9-libs bind9-libs-dbgsym bind9-utils bind9-utils-dbgsym Architecture: armhf Version: 1:9.18.24-1 Distribution: bookworm-security Urgency: high Maintainer: arm Build Daemon (arm-conova-01) Changed-By: Ondřej Surý Description: bind9 - Internet Domain Name Server bind9-dev - Static Libraries and Headers used by BIND 9 bind9-dnsutils - Clients provided with BIND 9 bind9-host - DNS Lookup Utility bind9-libs - Shared Libraries used by BIND 9 bind9-utils - Utilities for BIND 9 Changes: bind9 (1:9.18.24-1) bookworm-security; urgency=high . * New upstream version 9.18.24 - CVE-2023-4408: Parsing large DNS messages may cause excessive CPU load - CVE-2023-5517: Querying RFC 1918 reverse zones may cause an assertion failure when "nxdomain-redirect" is enabled - CVE-2023-5679: Enabling both DNS64 and serve-stale may cause an assertion failure during recursive resolution - CVE-2023-6516: Specific recursive query patterns may lead to an out-of-memory condition - CVE-2023-50387: KeyTrap - Extreme CPU consumption in DNSSEC validator - CVE-2023-50868: Preparing an NSEC3 closest encloser proof can exhaust CPU resources Checksums-Sha1: 2141962f4d4d8c837a1b7b7e95531a60d0aa45a7 593632 bind9-dbgsym_9.18.24-1_armhf.deb 245dfc6113d8ce55f3408586a33a985d56d25d47 515712 bind9-dev_9.18.24-1_armhf.deb a4056c41705920af0db857263ccba9d1d892ee33 354828 bind9-dnsutils-dbgsym_9.18.24-1_armhf.deb ed2d035ce536eb794790ce4f766753297c982461 397624 bind9-dnsutils_9.18.24-1_armhf.deb 6e47fa0d4c4a2cecb781f9395d46217694d07593 101332 bind9-host-dbgsym_9.18.24-1_armhf.deb 61c8ae6e68cc4105bf6430eaf16f345f2ae81495 301536 bind9-host_9.18.24-1_armhf.deb 0bc008835c370d424e25a73b4842c745146b1fa0 3572748 bind9-libs-dbgsym_9.18.24-1_armhf.deb 9bf291ad83a89b1d914c75a86e92abd6354bf46a 1291884 bind9-libs_9.18.24-1_armhf.deb a7a94fde8a9c73bf1de887aec904d6ce1ff17e68 300776 bind9-utils-dbgsym_9.18.24-1_armhf.deb 2ec1638ad01b26d64b26d531f5b6de53d20aeba6 400504 bind9-utils_9.18.24-1_armhf.deb 408ec28ed75c6e5866721d3b4e584db1c245dd98 10408 bind9_9.18.24-1_armhf-buildd.buildinfo 890b1a7045fea4be4dd07fe248f802432a779ccc 481916 bind9_9.18.24-1_armhf.deb Checksums-Sha256: 3a8c2daa93938bda5d35da68674f99417d78d901b35f932f9ff8360c54021d9b 593632 bind9-dbgsym_9.18.24-1_armhf.deb d2fa036fc136d75509b10706622fe59b97c9df9598c093bbb6f56243f7bfb437 515712 bind9-dev_9.18.24-1_armhf.deb 5691142058fb19939f8e3edef19c2f6658bb39fda673e4dfd794d591c409c564 354828 bind9-dnsutils-dbgsym_9.18.24-1_armhf.deb aec77302dbff6aac4894f3b606c332cbbe237f8176c6469affeb3bacb984a9c4 397624 bind9-dnsutils_9.18.24-1_armhf.deb 29d5c132d8f2ce2c342a1e357ffbf40e64e1c2eb172c285ed9e23bf6dc2875ee 101332 bind9-host-dbgsym_9.18.24-1_armhf.deb b27a59fe6892287d7cbb692028c6d8a17f33718f3854f00bf6c4b231a8ae5932 301536 bind9-host_9.18.24-1_armhf.deb 2cc9d10f5be05663a05d391b8dbffd38f2a0c06a718e2cae5690686b8d31287c 3572748 bind9-libs-dbgsym_9.18.24-1_armhf.deb cfbe4639732ff6a2ac2a913c8c1881bd5cf2e3b64dba7dca14edebab20bf8ef7 1291884 bind9-libs_9.18.24-1_armhf.deb 176214db38aa7e6df84d938e13b67fba23eea93c1b8819aa2e2119a04ac17e9c 300776 bind9-utils-dbgsym_9.18.24-1_armhf.deb 4d4f0a32c1fbbf0711625cf9ff9fdc5dbbe37fee84d127788a197cd8ef1926bb 400504 bind9-utils_9.18.24-1_armhf.deb d338b03c673c302bd016ebf7a4cddec09c2cf67b09d52e26d383fbf48b5dabe5 10408 bind9_9.18.24-1_armhf-buildd.buildinfo 30a5e5ef12c74469403e88b4085d3b51d4a46d663867d7dee46676903650b839 481916 bind9_9.18.24-1_armhf.deb Files: 9900f45d6c5a5c9c24018a4c302ab53b 593632 debug optional bind9-dbgsym_9.18.24-1_armhf.deb c88a2f354ba81bf1d79238d00da44cf7 515712 devel optional bind9-dev_9.18.24-1_armhf.deb 5928045fa3ccbe86334887b79fc4400f 354828 debug optional bind9-dnsutils-dbgsym_9.18.24-1_armhf.deb 581a447725d5ad18b13b13c7daa0b468 397624 net standard bind9-dnsutils_9.18.24-1_armhf.deb 1739ee808bc8d726e531cb47f355a071 101332 debug optional bind9-host-dbgsym_9.18.24-1_armhf.deb fa2e80f87bcacd585e0f516295918d76 301536 net standard bind9-host_9.18.24-1_armhf.deb bc8787430b0bd16ba45d92911b860048 3572748 debug optional bind9-libs-dbgsym_9.18.24-1_armhf.deb 5f9441182b4ef0ceb521056f8ce035ed 1291884 libs standard bind9-libs_9.18.24-1_armhf.deb 3c8ecbe419e02564adc420de4f1d4a9e 300776 debug optional bind9-utils-dbgsym_9.18.24-1_armhf.deb 9ed02f01814a43d6ea775732c2bb924f 400504 net optional bind9-utils_9.18.24-1_armhf.deb da9b52abda510674c9217d1b91f0d55e 10408 net optional bind9_9.18.24-1_armhf-buildd.buildinfo e88f22909042d8ed22551a66a10ded40 481916 net optional bind9_9.18.24-1_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEw2TRpv7HYIvK+TsIbEMdCP/rlD8FAmXKUvkACgkQbEMdCP/r lD+tjA//T29TMyJ2UVYPjdqLtsMQYm0PRotyAyIyhECpCD/UFVkzAg8EIB+hsN+9 aYCprmvXR+yrclw8+v/g+SgRTmFFfOEFFmJM8hvpVZ6IctZESvOqVfDNlqNgmmoL NQnNspUm9/rwFD1J+73IhkyrpkSVOc2G0ieZVHpXhgRWRwhplT89TXf6XAp8Nt+k Plo36S/NEqczUKhdzHYhw5SQ3h8g5sgfa0T1mDVWq662UOKX5TJS/gHJueEhA5y4 5akHN1E8vCyyOjAKQiyCLW8vH6ZkdrWzgMHAsh7GdhSt/Mxr9EGy/oNqdufQ1lzZ 8SByM7XPJq7dGlFk7TtC9NHTAxXMd0JY2NT5Vz8nEg4R7T5YZ4s6MtQRmm4/lZEE uo1Q4uRmYiAgiQ26A7FZbW71+RFsJ+BQbhwAuUmfXIC4lB2tCx0SFszb+BBlQgrd AAoSf27MGfDE9eOuTYS1V7KQW/xlbn8GrPeoiJBZJjz596VUZ6GdI9adHP50AvAK lC0S3AmpoQlxz7b9/EADCXhbIPE1lcz70LJsLzp/5PwPeuChOC8vW0FXU81LdqvE TyTBj2o++7sDweyI5yeirhrKsl3zScLNLK7CUZu5FIBYp6PFBP98WMbgqKkWMyQJ 7seMG3NzZiMOeJvbtlK3pBQdk+AuSLfE3JXuv/yeTcyRU76M7zc= =6qmZ -----END PGP SIGNATURE-----