[ Scott Kitterman ]
* SECURITY UPDATE:
* References: CVE 2011-4528, 2011-4869 (LP: #907983)
* Add debian/patches/CVE-2011-4528 to fix DoS with DNSSEC
- Patch from Debian security update
[ Marc Deslauriers ]
* SECURITY UPDATE: denial of service via crafted query
- debian/patches/CVE-2009-4008.patch: add checks to util/data/dname.c.
- CVE-2009-4008
* SECURITY UPDATE: denial of service via improperly aligned structures
- debian/patches/CVE-2010-0969.patch: properly calculate sizes in
util/net_help.c.
- CVE-2010-0969
-- Marc Deslauriers <email address hidden> Fri, 23 Dec 2011 08:07:43 -0500
This bug was fixed in the package unbound - 1.4.1-2ubuntu0.2
---------------
unbound (1.4.1-2ubuntu0.2) lucid-security; urgency=high
[ Scott Kitterman ] patches/ CVE-2011- 4528 to fix DoS with DNSSEC
* SECURITY UPDATE:
* References: CVE 2011-4528, 2011-4869 (LP: #907983)
* Add debian/
- Patch from Debian security update
[ Marc Deslauriers ] patches/ CVE-2009- 4008.patch: add checks to util/data/dname.c. patches/ CVE-2010- 0969.patch: properly calculate sizes in net_help. c.
* SECURITY UPDATE: denial of service via crafted query
- debian/
- CVE-2009-4008
* SECURITY UPDATE: denial of service via improperly aligned structures
- debian/
util/
- CVE-2010-0969
-- Marc Deslauriers <email address hidden> Fri, 23 Dec 2011 08:07:43 -0500