2023-10-25 00:11:51 by Thomas Klausner | Files touched by this commit (2298) |
Log message:
*: bump for openssl 3
|
2023-09-20 15:35:24 by Takahiro Kambe | Files touched by this commit (2) | |
Log message:
net/bind916: update to 9.16.44
9.16.44 (2023-09-20)
6245. [security] Limit the amount of recursion that can be performed
by isccc_cc_fromwire. (CVE-2023-3341) [GL #4152]
6235. [doc] Clarify BIND 9 time formats. [GL #4266]
6230. [bug] Prevent an unnecessary query restart if a synthesized
CNAME target points to the CNAME owner. [GL #3835]
|
2023-09-19 15:28:52 by Greg Troxel | Files touched by this commit (2) |
Log message:
net/bind*: Fix DESCR
Drop NEWS-type content from bind916.
all: Add final paragraph describing which version this is, and
upstream support status.
|
2023-08-29 16:46:00 by Takahiro Kambe | Files touched by this commit (2) | |
Log message:
net/bind916: update to 9.16.43
--- 9.16.43 released ---
6212. [bug] Don't process detach and close netmgr events when
the netmgr has been paused. [GL #4200]
|
2023-08-14 07:25:36 by Thomas Klausner | Files touched by this commit (1247) |
Log message:
*: recursive bump for Python 3.11 as new default
|
2023-07-03 14:48:52 by Thomas Klausner | Files touched by this commit (1) |
Log message:
bind916: restrict buildlink3.mk dependency to < 9.18 to avoid pulling in bind918
|
2023-06-21 16:40:43 by Takahiro Kambe | Files touched by this commit (3) | |
Log message:
net/bind916: update to 9.16.42
pkgsrc change: reduce pkglint warnings.
9.16.42 (2023-06-21)
Security release:
- CVE-2023-2828
- CVE-2023-2911
6192. [security] A query that prioritizes stale data over lookup
triggers a fetch to refresh the stale data in cache.
If the fetch is aborted for exceeding the recursion
quota, it was possible for 'named' to enter an infinite
callback loop and crash due to stack overflow. This has
been fixed. (CVE-2023-2911) [GL #4089]
6190. [security] Improve the overmem cleaning process to prevent the
cache going over the configured limit. (CVE-2023-2828)
[GL #4055]
6183. [bug] Fix a serve-stale bug where a delegation from cache
could be returned to the client. [GL #3950]
6173. [bug] Properly process extra "nameserver" lines in
resolv.conf otherwise the next line is not properly
processed. [GL #4066]
6169. [bug] named could crash when deleting inline-signing zones
with "rndc delzone". [GL #4054]
|
2023-05-17 15:41:58 by Takahiro Kambe | Files touched by this commit (2) | |
Log message:
net/bind916: update to 9.16.41
--- 9.16.41 released ---
6157. [bug] When removing delegations in an OPTOUT range
empty-non-terminal NSEC3 records generated by
those delegations were not removed. [GL #4027]
|
2023-04-24 15:45:10 by Takahiro Kambe | Files touched by this commit (2) | |
Log message:
net/bind916: update to 9.16.40
--- 9.16.40 released ---
6142. [bug] Reduce the number of dns_dnssec_verify calls made
determining if revoked keys needs to be removed from
the trust anchors. [GL #3981]
6138. [doc] Fix the DF-flag documentation on the outgoing
UDP packets. [GL #3710]
6132. [doc] Remove a dead link in the DNSSEC guide. [GL #3967]
6129. [cleanup] Value stored to 'source' during its initialization is
never read. [GL #3965]
6124. [bug] When changing from a NSEC3 capable DNSSEC algorithm to
an NSEC3 incapable DNSSEC algorithm using KASP the zone
could sometimes be incompletely signed. [GL #3937]
5741. [bug] Log files with "timestamp" suffixes could be left in
place after rolling, even if the number of preserved
log files exceeded the configured "versions" limit.
[GL #828] [GL #3959]
|
2023-04-19 10:12:01 by Adam Ciarcinski | Files touched by this commit (2359) | |
Log message:
revbump after textproc/icu update
|