Format: 1.8 Date: Tue, 27 Apr 2021 07:15:23 -0400 Source: bind9 Binary: bind9 bind9-dnsutils bind9-host bind9-libs bind9-utils Architecture: i386 i386_translations Version: 1:9.16.1-0ubuntu2.8 Distribution: focal Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: bind9 - Internet Domain Name Server bind9-dnsutils - Clients provided with BIND 9 bind9-host - DNS Lookup Utility bind9-libs - Shared Libraries used by BIND 9 bind9-utils - Utilities for BIND 9 Changes: bind9 (1:9.16.1-0ubuntu2.8) focal-security; urgency=medium . * SECURITY UPDATE: DoS via broken inbound incremental zone update (IXFR) - debian/patches/CVE-2021-25214.patch: immediately reject the entire transfer for certain RR in lib/dns/xfrin.c. - CVE-2021-25214 * SECURITY UPDATE: assert via answering certain queries for DNAME records - debian/patches/CVE-2021-25215.patch: fix assert checks in lib/ns/query.c. - CVE-2021-25215 * SECURITY UPDATE: overflow in BIND's GSSAPI security policy negotiation - debian/rules: build with --disable-isc-spnego to disable internal SPNEGO and use the one from the kerberos libraries. - CVE-2021-25216 Checksums-Sha1: 9758a9e9c620797613fc243e7697abd26e986937 477844 bind9-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb a2d330fd82fb97ab306908c4a0dcb10296a8be27 272664 bind9-dnsutils-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb 8621aa6d545beb55f181a9d15aa442a35c317adf 141308 bind9-dnsutils_9.16.1-0ubuntu2.8_i386.deb 5ee4f8a1d796e17aa2f6e21bf90731d0a619c7ad 75016 bind9-host-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb 56616390a9bbdd1503d50b571e834d2066675195 46380 bind9-host_9.16.1-0ubuntu2.8_i386.deb 28cb1230caa5bf16ec749ec45509ea90f5594731 2922908 bind9-libs-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb fc6c481552f2a8c5e7a8eeded4ecdbc3bc131295 1188356 bind9-libs_9.16.1-0ubuntu2.8_i386.deb c3f65f271728820d3b61289990ddf417636dadca 256680 bind9-utils-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb 04a0dee528274a0e05fb90868fd0c11f286a2f2b 178288 bind9-utils_9.16.1-0ubuntu2.8_i386.deb 4cbfb77eb74450b7d219afc773692f9449f14e47 11038 bind9_9.16.1-0ubuntu2.8_i386.buildinfo e8f9038bff9509c65b3defc1de233bc05f1ed758 243108 bind9_9.16.1-0ubuntu2.8_i386.deb 5712312a7f54c8740e80605d4ea6b92732b85c0b 12944 bind9_9.16.1-0ubuntu2.8_i386_translations.tar.gz Checksums-Sha256: c743e408fc2cca3549f6e967369cae61bf60d3922cb5444ba7ae3fa5119fb9ef 477844 bind9-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb 117a078364165404bc0744d018a8e3b1e499758df43670aa89def0d80eae40b2 272664 bind9-dnsutils-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb 461e61c423347f3e009c33908b8d5b3aa625ce2e5718fb32e53188168e7f6e0e 141308 bind9-dnsutils_9.16.1-0ubuntu2.8_i386.deb c1d7cb1d1cc4f6337e564aa3100341b29f00a88d10e35b2664059c74705571a0 75016 bind9-host-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb 96c8f4751dc9a6a5b5df22e86dabed0f700a57c9692e95c9f8147e552fb91c15 46380 bind9-host_9.16.1-0ubuntu2.8_i386.deb f09e119936c2097c4c0bff42abfee7adf047197663b243768ba185ca1c6165d8 2922908 bind9-libs-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb c28a83b6a2c67b245ff7a863c8aa45f8920a38922c30abfe792b7bfa3505f35a 1188356 bind9-libs_9.16.1-0ubuntu2.8_i386.deb c98caf230a85ee26d00517d6f3d66b054db3210404955ab5103a7083b8a848b4 256680 bind9-utils-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb c1413fbf3754402e87cb3d6bdc0ea38a9ccf5732bf632719a2f1cd0303194e15 178288 bind9-utils_9.16.1-0ubuntu2.8_i386.deb 0c618a71a5c0681d7ce2d57dd3846301e8c99cd8d37cd5b45d28a00b98c7d917 11038 bind9_9.16.1-0ubuntu2.8_i386.buildinfo 3e600fd6bc5fe34736c60620c28e67d562748ee58376b427b2b72d040bab8f36 243108 bind9_9.16.1-0ubuntu2.8_i386.deb fa23732077ea63eb5c81ac66f322d4aee15322784787aad8e5e17bfe4f2ddba7 12944 bind9_9.16.1-0ubuntu2.8_i386_translations.tar.gz Files: 87df6e697f03443b7209dd28a70a0585 477844 debug optional bind9-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb c36de92e57665c96b52bed3930dedcc8 272664 debug optional bind9-dnsutils-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb c5db0c5cd8359939bae104c9a8f01376 141308 net standard bind9-dnsutils_9.16.1-0ubuntu2.8_i386.deb 79ae44821a367a383ced5c2928e07c96 75016 debug optional bind9-host-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb 77062bc5df4ba62aafca8e1b83eb04cc 46380 net standard bind9-host_9.16.1-0ubuntu2.8_i386.deb 134bf707be55b684ee1ced117ff11e75 2922908 debug optional bind9-libs-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb d1da2a6d86ef2ea831073a5521d45926 1188356 libs standard bind9-libs_9.16.1-0ubuntu2.8_i386.deb 02ff2e591fd7936991cb64440fc6c2d1 256680 debug optional bind9-utils-dbgsym_9.16.1-0ubuntu2.8_i386.ddeb 8baba3ec0a672466bf1291c741b498ab 178288 net optional bind9-utils_9.16.1-0ubuntu2.8_i386.deb dc603725f50dbfe6fea3e8e7f8662268 11038 net optional bind9_9.16.1-0ubuntu2.8_i386.buildinfo 4734bb0c5b8565401a386af8b8669461 243108 net optional bind9_9.16.1-0ubuntu2.8_i386.deb 5912308baff39e3f5f03cbb45d9eb4ff 12944 raw-translations - bind9_9.16.1-0ubuntu2.8_i386_translations.tar.gz Original-Maintainer: Debian DNS Team