SUSE-SU-2022:2713-1 -- SLES bind, python3-bindID: oval:org.secpod.oval:def:89047632 | Date: (C)2022-10-28 (M)2024-01-23 |
Class: PATCH | Family: unix |
This update for bind fixes the following issues: - CVE-2021-25219: Fixed flaw that allowed abusing lame cache to severely degrade resolver performance . - CVE-2021-25220: Fixed potentially incorrect answers by cached forwarders . - CVE-2022-0396: Fixed a incorrect handling of TCP connection slots time frame leading to deny of service . The following non-security bugs were fixed: - Update to release 9.16.31 . - Logrotation broken since dropping chroot . - A non-existent initialization script may cause named not to start. A warning message is printed in named.prep and the fact is ignored. Also, the return value of a failed script was not handled properly causing a failed script to not prevent named to start. This is now fixed properly. [bsc#1199044, vendor-files.tar.bz2]
Platform: |
SUSE Linux Enterprise Desktop 15 SP4 |
SUSE Linux Enterprise Server 15 SP4 |