./net/bind99, Berkeley Internet Name Daemon implementation of DNS, version 9.9

[ CVSweb ] [ Homepage ] [ RSS ] [ Required by ] [ Add to tracker ]


Branch: pkgsrc-2015Q4, Version: 9.9.8pl4, Package name: bind-9.9.8pl4, Maintainer: pkgsrc-users

BIND, the Berkeley Internet Name Daemon, version 9 is a major rewrite
of nearly all aspects of the underlying BIND architecture. Some
of the important features of BIND-9 are:

- DNS Security
- IP version 6
- DNS Protocol Enhancements
- Views
- Multiprocessor Support
- Improved Portability Architecture
- Full NSEC3 support
- Automatic zone re-signing
- New update-policy methods tcp-self and 6to4-self

This package contains the BIND 9.9 release.



Package options: inet6, readline, threads

Master sites: (Expand)

SHA1: c4dae4dd9aefd6fc0f8644d6d8559d450e7e8224
RMD160: 989ac8bd9e9775b6f59a2b18b1f44265216c7d38
Filesize: 7812.204 KB

Version history: (Expand)


CVS history: (Expand)


   2016-03-11 10:51:11 by Benny Siegert | Files touched by this commit (2)
Log message:
Pullup ticket #4950 - requested by taca
net/bind99: security fix

Revisions pulled up:
- net/bind99/Makefile                                           1.54
- net/bind99/distinfo                                           1.37

---
   Module Name:	pkgsrc
   Committed By:	taca
   Date:		Thu Mar 10 00:50:35 UTC 2016

   Modified Files:
   	pkgsrc/net/bind99: Makefile distinfo

   Log message:
   Update bind99 package to 9.9.8pl4 (BIND 9.9.8-P4).

   	--- 9.9.8-P4 released ---

   4319.	[security]	Fix resolver assertion failure due to improper
   			DNAME handling when parsing fetch reply messages.
   			(CVE-2016-1286) [RT #41753]

   4318.	[security]	Malformed control messages can trigger assertions
   			in named and rndc. (CVE-2016-1285) [RT #41666]
   2016-01-20 20:33:53 by Benny Siegert | Files touched by this commit (2)
Log message:
Pullup ticket #4902 - requested by taca
net/bind99: security fix

Revisions pulled up:
- net/bind99/Makefile                                           1.51
- net/bind99/distinfo                                           1.36

---
   Module Name:    pkgsrc
   Committed By:   taca
   Date:           Wed Jan 20 02:17:12 UTC 2016

   Modified Files:
           pkgsrc/net/bind99: Makefile distinfo

   Log message:
   Update bind99 to 9.9.8pl3 (BIND 9.9.8-P3).

   Security Fixes

        * Specific APL data could trigger an INSIST. This flaw was discovered
          by Brian Mitchell and is disclosed in CVE-2015-8704. [RT #41396]
        * Named is potentially vulnerable to the OpenSSL vulnerabilty
          described in CVE-2015-3193.
        * Insufficient testing when parsing a message allowed records with an
          incorrect class to be be accepted, triggering a REQUIRE failure
          when those records were subsequently cached. This flaw is disclosed
          in CVE-2015-8000. [RT #40987]
        * Incorrect reference counting could result in an INSIST failure if a
          socket error occurred while performing a lookup. This flaw is
          disclosed in CVE-2015-8461. [RT#40945]

   New Features

        * None

   Feature Changes

        * Updated the compiled in addresses for H.ROOT-SERVERS.NET.

   Bug Fixes

        * Authoritative servers that were marked as bogus (e.g. blackholed in
          configuration or with invalid addresses) were being queried anyway.
          [RT #41321]