summaryrefslogtreecommitdiffstats
path: root/meta/recipes-connectivity/bind/bind_9.9.5.bb
diff options
context:
space:
mode:
authorSona Sarmadi <sona.sarmadi@enea.com>2015-12-21 10:18:02 +0100
committerHuimin She <huimin.she@enea.com>2015-12-21 11:18:31 +0100
commit143136f7c830a5beb149f05886d2a649a29fca7a (patch)
tree3371b1d1867a75db07f46923a8f29e3e457aaaf7 /meta/recipes-connectivity/bind/bind_9.9.5.bb
parent265f875c5aeb50e2cb443315ea3674a93d7024b5 (diff)
downloadpoky-143136f7c830a5beb149f05886d2a649a29fca7a.tar.gz
bind: CVE-2015-8000
Fixes a denial of service in BIND. An error in the parsing of incoming responses allows some records with an incorrect class to be accepted by BIND instead of being rejected as malformed. This can trigger a REQUIRE assertion failure when those records are subsequently cached. References: http://www.openwall.com/lists/oss-security/2015/12/15/14 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-8000 https://bugzilla.redhat.com/attachment.cgi?id=1105581 Signed-off-by: Sona Sarmadi <sona.sarmadi@enea.com> Signed-off-by: Huimin She <huimin.she@enea.com>
Diffstat (limited to 'meta/recipes-connectivity/bind/bind_9.9.5.bb')
-rw-r--r--meta/recipes-connectivity/bind/bind_9.9.5.bb1
1 files changed, 1 insertions, 0 deletions
diff --git a/meta/recipes-connectivity/bind/bind_9.9.5.bb b/meta/recipes-connectivity/bind/bind_9.9.5.bb
index ee940112f7..6e4878d06b 100644
--- a/meta/recipes-connectivity/bind/bind_9.9.5.bb
+++ b/meta/recipes-connectivity/bind/bind_9.9.5.bb
@@ -22,6 +22,7 @@ SRC_URI = "ftp://ftp.isc.org/isc/bind9/${PV}/${BPN}-${PV}.tar.gz \
22 file://CVE-2015-1349.patch \ 22 file://CVE-2015-1349.patch \
23 file://CVE-2015-4620.patch \ 23 file://CVE-2015-4620.patch \
24 file://CVE-2015-5722.patch \ 24 file://CVE-2015-5722.patch \
25 file://CVE-2015-8000.patch \
25 " 26 "
26 27
27SRC_URI[md5sum] = "e676c65cad5234617ee22f48e328c24e" 28SRC_URI[md5sum] = "e676c65cad5234617ee22f48e328c24e"