Update the Bind package on the Fuel master node

Bug #1608584 reported by Alexander Rubtsov
256
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Mirantis OpenStack
Fix Released
High
MOS Linux

Bug Description

The following security fix has been requested by customer to be delivered as part of MOS 7.0 MU:

CentOS 6/7: bind (CESA-2015:1705) (CVE-2015-5722)
https://www.tenable.com/plugins/index.php?view=single&id=86503
https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-5722

Package installed: bind-libs-9.8.2-0.30.rc1.el6_6.3
Should be: bind-libs-9.8.2-0.37.rc1.el6_7.4

Package installed: bind-utils-9.8.2-0.30.rc1.el6_6.3
Should be: bind-utils-9.8.2-0.37.rc1.el6_7.4

Changed in mos:
assignee: nobody → MOS Linux (mos-linux)
Anton Matveev (amatveev)
tags: added: customer-found sla1
Changed in mos:
importance: Undecided → High
Revision history for this message
Alexander Rubtsov (arubtsov) wrote :

sla1 for MOS 7.0-updates

Changed in mos:
status: New → Confirmed
milestone: 7.0-updates → 7.0-mu-5
Revision history for this message
Denis Meltsaykin (dmeltsaykin) wrote :

Needed packages have been placed in http://pkg-updates.fuel-infra.org/centos6/

Changed in mos:
status: Confirmed → Fix Committed
tags: added: on-verification
Revision history for this message
Ekaterina Shutova (eshutova) wrote :

Verified on MOS 7.0 + MU5 updates.

Latest versions of files were uploaded.
bind-libs.x86_64 32:9.8.2-0.47.rc1.el6 @mos7.0-security
bind-utils.x86_64 32:9.8.2-0.47.rc1.el6 @mos7.0-security

tags: removed: on-verification
Changed in mos:
status: Fix Committed → Fix Released
information type: Private → Public Security
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.