Page MenuHomeSolus

Update bind-utils to 9.11.2-P1
ClosedPublic

Authored by sunnyflunk on Jul 8 2017, 12:43 PM.
Referenced Files
F11019287: D563.id1245.diff
Sun, Aug 6, 6:51 PM
F11015227: D563.id1575.diff
Sat, Aug 5, 10:18 AM
F11005920: D563.diff
Tue, Aug 1, 11:21 AM
F11002260: D563.diff
Mon, Jul 31, 12:26 AM
F10980937: D563.id1834.diff
Sun, Jul 23, 5:26 AM
F10866180: D563.diff
Jun 17 2023, 2:19 PM
F10851041: D563.id.diff
Jun 12 2023, 8:55 AM
F10844190: D563.diff
Jun 10 2023, 8:16 PM

Details

Summary

Full changelog available here
Resolves CVE-2017-3145, denial-of-service vector which can potentially be
exploited against ISC BIND servers, causing them to crash.

Packaging:
Add nsupdate, invalidates T3179, ref task T1901.

Signed-off-by: Pierre-Yves <pyu@riseup.net>

Test Plan
  • nslookup solus-project.com : ok
  • host solus-project.com : ok
  • dig : ok

Diff Detail

Repository
R431 bind-utils
Branch
master
Lint
No Lint Coverage
Unit
No Test Coverage

Event Timeline

@kyrios123: Noticed no one got to my patch ealier for bind. Could you please just add my changes to your patch and I can close mine.

Please take a look at: D516

One of the important part is the license change from ISC to MPL-2.0

ATM patch review is falling behind on account of the whole 2-job thing. This'll become markedly easier at the end of the week, sorry.

In D563#8220, @ikey wrote:

ATM patch review is falling behind on account of the whole 2-job thing. This'll become markedly easier at the end of the week, sorry.

No worries, I understand just its sometime gets a bunch of dubplicates patches and its hard to keep track of all of them.

I really wish Phabricator would list the target repo for the patch in the main patches view..
Once I do go full time my first goals will be greatly reducing the backlog on the tracker with daily bugs + patches work,
so we'll get to a point where we only have a few patches floating around at any one time.

In D563#8216, @curantes wrote:

@kyrios123: Noticed no one got to my patch ealier for bind. Could you please just add my changes to your patch and I can close mine.

Please take a look at: D516

One of the important part is the license change from ISC to MPL-2.0

Sorry @curantes I saw your patch submission, but a most recent version was already in the repo so I started from there.
If you want you can update this diff with your change arc diff --update D563 or I'll update it myself later today or tomorrow.

Change license from ISC to MPL-2.0, thanks @curantes !

kyrios123 retitled this revision from Update bind-utils to 9.11.1_p3 to Update bind-utils to 9.11.2.
kyrios123 edited the summary of this revision. (Show Details)

Bump to 9.11.2

@kyrios123 please add nsupdate bin to your revision to fix T3179

package.yml
20–21

please add a line with

%make -C bin/nsupdate

This fixes T3179

23–24

please also add a line to install nsupdate at the end of install section.

this fixes T3179

%make_install -C bin/nsupdate
kyrios123 edited the summary of this revision. (Show Details)
kyrios123 added a task: T1901: SSSD.
kyrios123 added a subscriber: rigrassm.

Apply the changes of @rigrassm in T3179 as pre-requisite for T1901.

PS: @curantes in such cases, do not hesitate to update my diff or even to commandeer it. Thanks for the notification! :)

sunnyflunk added a reviewer: kyrios123.
sunnyflunk added a subscriber: sunnyflunk.

Want to get the nsupdate changes with the new update

sunnyflunk retitled this revision from Update bind-utils to 9.11.2 to Update bind-utils to 9.11.2-P1.
sunnyflunk edited the summary of this revision. (Show Details)

Add CVE details

This revision was automatically updated to reflect the committed changes.