Path to this page:
Subject: CVS commit: [pkgsrc-2020Q1] pkgsrc/net/unbound
From: Benny Siegert
Date: 2020-05-20 21:15:21
Message id: 20200520191521.4E123FB27@cvs.NetBSD.org
Log Message:
Pullup ticket #6204 - requested by he
net/unbound: security fix
Revisions pulled up:
- net/unbound/Makefile 1.78
- net/unbound/distinfo 1.58
---
Module Name: pkgsrc
Committed By: he
Date: Tue May 19 08:39:31 UTC 2020
Modified Files:
pkgsrc/net/unbound: Makefile distinfo
Log Message:
Update unbound to version 1.10.1.
Pkgsrc changes:
* None.
Upstream changes:
This release fixes CVE-2020-12662 and CVE-2020-12663.
Bug Fixes:
- CVE-2020-12662 Unbound can be tricked into amplifying an incoming
query into a large number of queries directed to a target.
- CVE-2020-12663 Malformed answers from upstream name servers can be
used to make Unbound unresponsive.
Files: