Bug 137374 - dns/bind9-sdb-postgresql needs base bind version bump for DoS vulnerability
Summary: dns/bind9-sdb-postgresql needs base bind version bump for DoS vulnerability
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: Normal Affects Only Me
Assignee: Wesley Shields
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2009-08-03 01:40 UTC by josh.carroll
Modified: 2009-08-04 19:58 UTC (History)
0 users

See Also:


Attachments
file.diff (1.69 KB, patch)
2009-08-03 01:40 UTC, josh.carroll
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description josh.carroll 2009-08-03 01:40:06 UTC
Per the announcement at isc.org, there is a remotely exploitable DoS vulnerability in bind 9, including the 9.4.3-P2 version.

Attached is a path for the dns/bind9-sdb-postgresql port to bump it to the 9.4.3-P3 version, which addresses this vulnerability.

Details about the problem can be found here:

https://www.isc.org/node/474

Thanks,
Josh

Fix: Patch attached to bump from 9.4.3-P2 to 9.4.3-P3.

Patch attached with submission follows:
How-To-Repeat: https://www.isc.org/node/474 has details
Comment 1 Edwin Groothuis freebsd_committer freebsd_triage 2009-08-03 01:40:16 UTC
Class Changed
From-To: sw-bug->maintainer-update

Fix category (submitter is maintainer) (via the GNATS Auto Assign Tool)
Comment 2 Wesley Shields freebsd_committer freebsd_triage 2009-08-03 02:43:48 UTC
Responsible Changed
From-To: freebsd-ports-bugs->wxs

I'll take it.
Comment 3 Wesley Shields freebsd_committer freebsd_triage 2009-08-04 19:58:09 UTC
State Changed
From-To: open->closed

Committed. Thanks!