X-Original-To: alpine-aports@lists.alpinelinux.org Received: from mail-lf0-f68.google.com (mail-lf0-f68.google.com [209.85.215.68]) by lists.alpinelinux.org (Postfix) with ESMTP id F148C5C427C for ; Mon, 13 Feb 2017 10:05:52 +0000 (GMT) Received: by mail-lf0-f68.google.com with SMTP id v186so7927534lfa.2 for ; Mon, 13 Feb 2017 02:05:52 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=from:to:cc:subject:date:message-id; bh=46kDw6Gku/ohLPLYrYNuF0QgFAvsQIa0CqAhgBzmJ30=; b=aRVVAedYv2SXUnaq5ZIdl6Ow5TLmsKCSZzsiJeD87XMuNcMSeci+9WWCD6/nS+pHH8 YHxflxhRlGp/sJQGr8P+xXpWpF9ybVvo6jB0CenwwHRSGPUoY4akIDK0mkX/ayTLV0jT phcG9YXIjwIZkljPkrVus946GeQg6xaKjoDdmEp+MkiXhFCpJWs5z7TewMRg9HWNGEo4 THmi8z5zPKTwvshIN1fDKwbFFaYrqupjd3unvMWBbnuA/lrUoqb7UQb8iKQO80qJ8O8W 6Zq/9qSPAnrBnLd+Z9+wiNlQoiROCmdN8H4F/wdp2TtJbIT2yJnFgCuxvMAPHV0Px2oR DsPQ== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:to:cc:subject:date:message-id; bh=46kDw6Gku/ohLPLYrYNuF0QgFAvsQIa0CqAhgBzmJ30=; b=JUEJE9hbfhgwM9EwEhPSGc+uSOO1R1jt8eyMscq2puxSfYNIeA5eL62w0NZIu+kxMS 43TeEND6DjWCEOwrpCi3Zoj59M0L3NtF77E1tRzYBwtBm7+0/2Qz6hNxpEOmP2g1HLwp rxMmjZrMfZD1Nmdrh+TDYXFcuHTIff0JhqYC2yBMGNTKrrFVJXCE4ekkUF+nOBVPHu1M vXQq/gHWTnxao7msEK3S3MTi2JP3ARASkhNtvaJO2bEfN8EVrPOK7UtkmIDUAwhUhlpT gF9W9ntwusjoct6ISgDHC8/rKDqhLrn8l5UhwNbQVQ50fG5mpEuqU1d4+XzTr61MsffT 5mOw== X-Gm-Message-State: AMke39ko8+G+LknT+MAtC0JXPNGGk97NDu4jmFWnpHqrcFgtBAjMkRC4Jra/wrthffkzdA== X-Received: by 10.25.22.201 with SMTP id 70mr6370750lfw.97.1486980351979; Mon, 13 Feb 2017 02:05:51 -0800 (PST) Received: from v3-2.util.wtbts.net ([83.145.235.199]) by smtp.gmail.com with ESMTPSA id g38sm2575898lfi.3.2017.02.13.02.05.51 (version=TLS1_2 cipher=ECDHE-RSA-AES128-SHA bits=128/128); Mon, 13 Feb 2017 02:05:51 -0800 (PST) From: Sergei Lukin To: alpine-aports@lists.alpinelinux.org Cc: Sergei Lukin Subject: [alpine-aports] [PATCH v3.2] main/bind: security upgrade to 9.10.4_p6 - fixes #6832 Date: Mon, 13 Feb 2017 10:05:45 +0000 Message-Id: <1486980345-25709-1-git-send-email-sergej.lukin@gmail.com> X-Mailer: git-send-email 2.4.11 X-Mailinglist: alpine-aports Precedence: list List-Id: Alpine Development List-Unsubscribe: List-Post: List-Help: List-Subscribe: CVE-2017-3135: Combination of DNS64 and RPZ Can Lead to Crash --- main/bind/APKBUILD | 13 ++++++++----- 1 file changed, 8 insertions(+), 5 deletions(-) diff --git a/main/bind/APKBUILD b/main/bind/APKBUILD index aeffcc7..0e6b88f 100644 --- a/main/bind/APKBUILD +++ b/main/bind/APKBUILD @@ -2,11 +2,11 @@ # Maintainer: Natanael Copa # Contributor: Carlo Landmeter pkgname=bind -pkgver=9.10.4_p5 +pkgver=9.10.4_p6 _ver=${pkgver%_p*} _p=${pkgver#*_p} [ "$_p" != "$pkgver" ] && _ver="${_ver}-P$_p" -pkgrel=1 +pkgrel=0 pkgdesc="The Berkeley Internet Name Domain Name Server and tools" url="http://www.isc.org" arch="all" @@ -38,6 +38,9 @@ source="http://ftp.isc.org/isc/bind9/${_ver}/bind-${_ver}.tar.gz # - CVE-2016-9131 # - CVE-2016-9147 # - CVE-2016-9444 +# 9.10.4_p6-r0: +# - CVE-2017-3135 + builddir="$srcdir/bind-${_ver}" prepare() { @@ -125,7 +128,7 @@ tools() { done } -md5sums="c53a3e34e7aabb16820b036ae9afd3c9 bind-9.10.4-P5.tar.gz +md5sums="ad5e615f60e2f4e161a3c8187b41ba82 bind-9.10.4-P6.tar.gz f270a5b0a28ab6e818840c5c368ddbcc bind.so_bsdcompat.patch 0c7c9c9a131564ac8acbbbc2ce25f94b named.initd 418a367cecfdf8760c92235d3967867e named.confd @@ -135,7 +138,7 @@ a7455b009b7fccd74ac6f6eaa6902a00 127.zone c3220168fabfb31a25e8c3a545545e34 localhost.zone a94e29ac677846f3d4d618c50b7d34f1 named.ca daeebcd6384a73b364eed865b40605cb CVE-2016-8864.patch" -sha256sums="89c47b413613feddb1b623ad092f3def2247402e4148c464dbc6c0021e3f0feb bind-9.10.4-P5.tar.gz +sha256sums="a1dfbfd1d11cb52f2d9e5af0def25763798bda243841722dd0b319086a73ee65 bind-9.10.4-P6.tar.gz 4c5dc352da0a12bdda2644e835f7eabde4f5687f1a98acd65b22be4ee587c086 bind.so_bsdcompat.patch 74e7a9ab5836d5182a55a9fc4ba24ea2665e4ef9307c4071ba6e2eab792d73ce named.initd c0e7b365dca072dc96a97c8f81dff012aff7fe57337c10b63cd9f292d03c207d named.confd @@ -145,7 +148,7 @@ c0e7b365dca072dc96a97c8f81dff012aff7fe57337c10b63cd9f292d03c207d named.confd b6dff70386920adb21883566610b0a45b9de5a3847a870e4ad1902c5c7900399 localhost.zone 0bd88f7f5cab2f872d3619700e382c1df6837a8aacf28cf6a0bf336742a0ee56 named.ca 5eb5cd93454fe1554e49f1920a9b6659105b5ee72625e7963bd41c6c357b7dce CVE-2016-8864.patch" -sha512sums="09613b2a16a5784a1b0e4b685d1d2cea1c1539e11497c848f1c92a8a4f26c7fc0f08ef8f2bd17316559966aca04e1ec9d744304c36c002d66eaff6240473a101 bind-9.10.4-P5.tar.gz +sha512sums="a881d81307b48922c062d672701e777a17d5130a10dc1c5e4022edbbc28c7136076c17a0c89b211cd3b07527b81fa9a3ac599d0c3c23d70a75e47c63cd2a59f5 bind-9.10.4-P6.tar.gz f3e3d1b680617485b9db20a59a10fec3b3b539d423984493228a7d5aaa29d699b9012ad60e863e56bdaf15b73952c22710d0ded1c86cd24417ac775ee062cfa3 bind.so_bsdcompat.patch 196c0a3b43cf89e8e3547d7fb63a93ff9a3306505658dfd9aa78e6861be6b226580b424dd3dd44b955b2d9f682b1dc62c457f3ac29ce86200ef070140608c015 named.initd 127bdcc0b5079961f0951344bc3fad547450c81aee2149eac8c41a8c0c973ea0ffe3f956684c6fcb735a29c43d2ff48c153b6a71a0f15757819a72c492488ddf named.confd -- 2.4.11 --- Unsubscribe: alpine-aports+unsubscribe@lists.alpinelinux.org Help: alpine-aports+help@lists.alpinelinux.org ---