summaryrefslogtreecommitdiffstats
path: root/meta/recipes-connectivity/bind/bind_9.9.5.bb
diff options
context:
space:
mode:
authorSona Sarmadi <sona.sarmadi@enea.com>2015-12-21 10:18:02 +0100
committerSona Sarmadi <sona.sarmadi@enea.com>2016-04-08 12:32:18 +0200
commitd825e9e4562419e839b79cd7c811ea1b9b0c2608 (patch)
tree5367f0607697a8f39c59e18ae307fa13f392a3fd /meta/recipes-connectivity/bind/bind_9.9.5.bb
parent3f66cbfdff13798a6893abb7a43d45abc7004a49 (diff)
downloadpoky-d825e9e4562419e839b79cd7c811ea1b9b0c2608.tar.gz
bind: CVE-2015-8000
Fixes a denial of service in BIND. An error in the parsing of incoming responses allows some records with an incorrect class to be accepted by BIND instead of being rejected as malformed. This can trigger a REQUIRE assertion failure when those records are subsequently cached. References: http://www.openwall.com/lists/oss-security/2015/12/15/14 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-8000 https://bugzilla.redhat.com/attachment.cgi?id=1105581 Signed-off-by: Sona Sarmadi <sona.sarmadi@enea.com> Signed-off-by: Huimin She <huimin.she@enea.com> Signed-off-by: Sona Sarmadi <sona.sarmadi@enea.com>
Diffstat (limited to 'meta/recipes-connectivity/bind/bind_9.9.5.bb')
-rw-r--r--meta/recipes-connectivity/bind/bind_9.9.5.bb1
1 files changed, 1 insertions, 0 deletions
diff --git a/meta/recipes-connectivity/bind/bind_9.9.5.bb b/meta/recipes-connectivity/bind/bind_9.9.5.bb
index 92a16a9de7..d416a3ec0e 100644
--- a/meta/recipes-connectivity/bind/bind_9.9.5.bb
+++ b/meta/recipes-connectivity/bind/bind_9.9.5.bb
@@ -18,6 +18,7 @@ SRC_URI = "ftp://ftp.isc.org/isc/bind9/${PV}/${BPN}-${PV}.tar.gz \
18 file://CVE-2015-1349.patch \ 18 file://CVE-2015-1349.patch \
19 file://CVE-2015-4620.patch \ 19 file://CVE-2015-4620.patch \
20 file://CVE-2015-5722.patch \ 20 file://CVE-2015-5722.patch \
21 file://CVE-2015-8000.patch \
21 " 22 "
22 23
23SRC_URI[md5sum] = "e676c65cad5234617ee22f48e328c24e" 24SRC_URI[md5sum] = "e676c65cad5234617ee22f48e328c24e"