Bug 286282 - dns/dnsdist: update to 1.9.9 (fixes CVE-2025-30194)
Summary: dns/dnsdist: update to 1.9.9 (fixes CVE-2025-30194)
Status: In Progress
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: --- Affects Some People
Assignee: Ports Security Team
URL: https://blog.powerdns.com/2025/04/29/...
Keywords:
: 286474 (view as bug list)
Depends on:
Blocks:
 
Reported: 2025-04-22 08:40 UTC by Ralf van der Enden
Modified: 2025-05-01 15:59 UTC (History)
2 users (show)

See Also:
vvd: merge-quarterly+


Attachments
add patch to support quiche >= 0.23 and bump PORTREVISION (1.46 KB, patch)
2025-04-22 08:47 UTC, Ralf van der Enden
tremere: maintainer-approval+
Details | Diff
Update dnsdist to 1.9.9 (fixes CVE-2025-30194) (1.17 KB, patch)
2025-04-30 19:47 UTC, Ralf van der Enden
tremere: maintainer-approval+
Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Ralf van der Enden 2025-04-22 08:40:57 UTC
Q&A:
poudriere: builds ok (14.2-RELEASE-p3; amd64)
Makefile portfmt/clippy processed
Comment 1 Ralf van der Enden 2025-04-22 08:47:53 UTC
Created attachment 259789 [details]
add patch to support quiche >= 0.23 and bump PORTREVISION
Comment 2 Ralf van der Enden 2025-04-30 19:47:14 UTC
Created attachment 260035 [details]
Update dnsdist to 1.9.9 (fixes CVE-2025-30194)
Comment 3 Ralf van der Enden 2025-04-30 19:47:40 UTC
https://www.dnsdist.org/changelog.html#change-1.9.9
Comment 4 Ralf van der Enden 2025-04-30 19:48:47 UTC
Please close #286474

It got created while I was working on this PR for the 1.9.9 update.
Comment 5 Vladimir Druzenko freebsd_committer freebsd_triage 2025-05-01 13:35:14 UTC
*** Bug 286474 has been marked as a duplicate of this bug. ***
Comment 6 commit-hook freebsd_committer freebsd_triage 2025-05-01 15:51:31 UTC
A commit in branch main references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=75db4df283ffffe0af794d008a27f98cf5951150

commit 75db4df283ffffe0af794d008a27f98cf5951150
Author:     Ralf van der Enden <tremere@cainites.net>
AuthorDate: 2025-05-01 15:29:56 +0000
Commit:     Vladimir Druzenko <vvd@FreeBSD.org>
CommitDate: 2025-05-01 15:50:37 +0000

    dns/dnsdist: Update 1.9.8 => 1.9.9 (fixes CVE-2025-30194)

    Release notes:
    https://blog.powerdns.com/2025/04/29/powerdns-dnsdist-1.9.9-released

    Changelog:
    https://www.dnsdist.org/changelog.html#change-1.9.9

    PR:             286282
    Security:       CVE-2025-30194
    MFH:            2025Q2

 dns/dnsdist/Makefile | 2 +-
 dns/dnsdist/distinfo | 6 +++---
 2 files changed, 4 insertions(+), 4 deletions(-)
Comment 7 commit-hook freebsd_committer freebsd_triage 2025-05-01 15:58:32 UTC
A commit in branch 2025Q2 references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=0db4b8d54b26042d0e9126291bb45ed322c34064

commit 0db4b8d54b26042d0e9126291bb45ed322c34064
Author:     Ralf van der Enden <tremere@cainites.net>
AuthorDate: 2025-05-01 15:29:56 +0000
Commit:     Vladimir Druzenko <vvd@FreeBSD.org>
CommitDate: 2025-05-01 15:57:54 +0000

    dns/dnsdist: Update 1.9.8 => 1.9.9 (fixes CVE-2025-30194)

    Release notes:
    https://blog.powerdns.com/2025/04/29/powerdns-dnsdist-1.9.9-released

    Changelog:
    https://www.dnsdist.org/changelog.html#change-1.9.9

    PR:             286282
    Security:       CVE-2025-30194
    MFH:            2025Q2
    (cherry picked from commit 75db4df283ffffe0af794d008a27f98cf5951150)

 dns/dnsdist/Makefile | 2 +-
 dns/dnsdist/distinfo | 6 +++---
 2 files changed, 4 insertions(+), 4 deletions(-)
Comment 8 Vladimir Druzenko freebsd_committer freebsd_triage 2025-05-01 15:59:29 UTC
Thanks, committed.