Comment 10 for bug 907983

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package unbound - 1.4.1-2ubuntu0.2

---------------
unbound (1.4.1-2ubuntu0.2) lucid-security; urgency=high

  [ Scott Kitterman ]
  * SECURITY UPDATE:
  * References: CVE 2011-4528, 2011-4869 (LP: #907983)
  * Add debian/patches/CVE-2011-4528 to fix DoS with DNSSEC
    - Patch from Debian security update

  [ Marc Deslauriers ]
  * SECURITY UPDATE: denial of service via crafted query
    - debian/patches/CVE-2009-4008.patch: add checks to util/data/dname.c.
    - CVE-2009-4008
  * SECURITY UPDATE: denial of service via improperly aligned structures
    - debian/patches/CVE-2010-0969.patch: properly calculate sizes in
      util/net_help.c.
    - CVE-2010-0969
 -- Marc Deslauriers <email address hidden> Fri, 23 Dec 2011 08:07:43 -0500