[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249982

 
 

909

 
 

195748

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2022:3682-1 -- SLES bind, libbind9-1600, libdns1605, libirs1601, libisc1606, libisccc1600, libisccfg1600, libns1604, libirs-devel, python3-bind

ID: oval:org.secpod.oval:def:89047710Date: (C)2022-10-28   (M)2024-01-23
Class: PATCHFamily: unix




This update for bind fixes the following issues: - CVE-2022-2795: Fixed potential performance degredation due to missing database lookup limits when processing large delegations . - CVE-2022-38177: Fixed a memory leak that could be externally triggered in the DNSSEC verification code for the ECDSA algorithm . - CVE-2022-38178: Fixed memory leaks that could be externally triggered in the DNSSEC verification code for the EdDSA algorithm . Bugfixes: - Changed ownership of /var/lib/named/master from named:named to root:root

Platform:
SUSE Linux Enterprise Desktop 15 SP4
SUSE Linux Enterprise Server 15 SP4
SUSE Linux Enterprise Server 15 SP3
SUSE Linux Enterprise Desktop 15 SP3
Product:
bind
libbind9-1600
libdns1605
libirs1601
libisc1606
libisccc1600
libisccfg1600
libns1604
libirs-devel
python3-bind
Reference:
SUSE-SU-2022:3682-1
CVE-2022-2795
CVE-2022-38177
CVE-2022-38178
CVE    3
CVE-2022-2795
CVE-2022-38178
CVE-2022-38177
CPE    21
cpe:/a:isc:bind:9.11.29:s1:~~supported_preview~~~
cpe:/a:libisccfg1600:libisccfg1600
cpe:/a:isc:bind
cpe:/a:libisccc1600:libisccc1600
...

© SecPod Technologies