Brought to you by:
Suppliers of:
The version of BIND shipped with most Linux flavors is vulnerable to a remote denial of service attack, which can cause the name server to crash when accessing an uninitialized pointer. This problem is fixed in the current maintenance release of BIND, 8.2.2P7.
Credit:
The information has been provided by debian-security-announce at LISTS.DEBIAN.ORG , , bugzilla at REDHAT.COM , Linux Mandrake Security Team , secure at CONECTIVA.COM.BR , Mark.Andrews at NOMINUM.COM , The information has been provided by Debian Security Announce , RedHat Bugzilla , Linux Mandrake Security Team , Conectiva Secure and Mark Andrews .
Vulnerable systems:
Debian GNU/Linux 2.1, 2.2
Red Hat Linux 5.2, 6.0, 6.1, 6.2, 6.2EE, 7.0, 7.0J - i386, Alpha, Sparc
Mandrake 6.0, 6.1, 7.0, 7.1, 7.2
Conectiva 4.0, 4.0es, 4.1, 4.2, 5.0, prg gr?ficos, ecommerce, 5.1
Patch Information:
Debian GNU/Linux 2.2 (stable) alias potato
Fixes are currently available for the Alpha, ARM, Intel ia32, Motorola 680x0, PowerPC and Sun SPARC architectures, and will be included in 2.2r2.
Source archives:
http://security.debian.org/dists/potato/updates/main/source/bind_8.2.2p7-1.diff.gz
http://security.debian.org/dists/potato/updates/main/source/bind_8.2.2p7-1.dsc
http://security.debian.org/dists/potato/updates/main/source/bind_8.2.2p7.orig.tar.gz
Alpha architecture:
http://security.debian.org/dists/potato/updates/main/binary-alpha/bind-dev_8.2.2p7-1_alpha.deb
http://security.debian.org/dists/potato/updates/main/binary-alpha/bind_8.2.2p7-1_alpha.deb
http://security.debian.org/dists/potato/updates/main/binary-alpha/dnsutils_8.2.2p7-1_alpha.deb
ARM architecture:
http://security.debian.org/dists/potato/updates/main/binary-arm/bind-dev_8.2.2p7-1_arm.deb
http://security.debian.org/dists/potato/updates/main/binary-arm/bind_8.2.2p7-1_arm.deb
http://security.debian.org/dists/potato/updates/main/binary-arm/dnsutils_8.2.2p7-1_arm.deb
Intel ia32 architecture:
http://security.debian.org/dists/potato/updates/main/binary-i386/bind-dev_8.2.2p7-1_i386.deb
http://security.debian.org/dists/potato/updates/main/binary-i386/bind_8.2.2p7-1_i386.deb
http://security.debian.org/dists/potato/updates/main/binary-i386/dnsutils_8.2.2p7-1_i386.deb
Motorola 680x0 architecture:
http://security.debian.org/dists/potato/updates/main/binary-m68k/bind-dev_8.2.2p7-1_m68k.deb
http://security.debian.org/dists/potato/updates/main/binary-m68k/bind_8.2.2p7-1_m68k.deb
http://security.debian.org/dists/potato/updates/main/binary-m68k/dnsutils_8.2.2p7-1_m68k.deb
PowerPC architecture:
http://security.debian.org/dists/potato/updates/main/binary-powerpc/bind-dev_8.2.2p7-1_powerpc.deb
http://security.debian.org/dists/potato/updates/main/binary-powerpc/bind_8.2.2p7-1_powerpc.deb
http://security.debian.org/dists/potato/updates/main/binary-powerpc/dnsutils_8.2.2p7-1_powerpc.deb
Sun Sparc architecture:
http://security.debian.org/dists/potato/updates/main/binary-sparc/bind-dev_8.2.2p7-1_sparc.deb
http://security.debian.org/dists/potato/updates/main/binary-sparc/bind_8.2.2p7-1_sparc.deb
http://security.debian.org/dists/potato/updates/main/binary-sparc/dnsutils_8.2.2p7-1_sparc.deb
Debian GNU/Linux Unstable alias woody
This version of Debian is not yet released.
Red Hat Linux 5.2:
Alpha:
ftp://updates.redhat.com/5.2/alpha/bind-8.2.2_P7-0.5.2.alpha.rpm
Sparc:
ftp://updates.redhat.com/5.2/sparc/bind-8.2.2_P7-0.5.2.sparc.rpm
i386:
ftp://updates.redhat.com/5.2/i386/bind-8.2.2_P7-0.5.2.i386.rpm
Sources:
ftp://updates.redhat.com/5.2/SRPMS/bind-8.2.2_P7-0.5.2.src.rpm
Red Hat Linux 6.0:
Sparc:
ftp://updates.redhat.com/6.0/sparc/bind-8.2.2_P7-0.6.2.sparc.rpm
i386:
ftp://updates.redhat.com/6.0/i386/bind-8.2.2_P7-0.6.2.i386.rpm
Alpha:
ftp://updates.redhat.com/6.0/alpha/bind-8.2.2_P7-0.6.2.alpha.rpm
Sources:
ftp://updates.redhat.com/6.0/SRPMS/bind-8.2.2_P7-0.6.2.src.rpm
Red Hat Linux 6.1:
Sparc:
ftp://updates.redhat.com/6.1/sparc/bind-8.2.2_P7-0.6.2.sparc.rpm
i386:
ftp://updates.redhat.com/6.1/i386/bind-8.2.2_P7-0.6.2.i386.rpm
Alpha:
ftp://updates.redhat.com/6.1/alpha/bind-8.2.2_P7-0.6.2.alpha.rpm
Sources:
ftp://updates.redhat.com/6.1/SRPMS/bind-8.2.2_P7-0.6.2.src.rpm
Red Hat Linux 6.2:
Alpha:
ftp://updates.redhat.com/6.2/alpha/bind-8.2.2_P7-0.6.2.alpha.rpm
Sparc:
ftp://updates.redhat.com/6.2/sparc/bind-8.2.2_P7-0.6.2.sparc.rpm
i386:
ftp://updates.redhat.com/6.2/i386/bind-8.2.2_P7-0.6.2.i386.rpm
Sources:
ftp://updates.redhat.com/6.2/SRPMS/bind-8.2.2_P7-0.6.2.src.rpm
Red Hat Linux 7.0:
Alpha:
ftp://updates.redhat.com/7.0/alpha/bind-8.2.2_P7-1.alpha.rpm
Sparc:
ftp://updates.redhat.com/7.0/sparc/bind-8.2.2_P7-1.sparc.rpm
i386:
ftp://updates.redhat.com/7.0/i386/bind-8.2.2_P7-1.i386.rpm
Sources:
ftp://updates.redhat.com/7.0/SRPMS/bind-8.2.2_P7-1.src.rpm
Linux-Mandrake 6.0:
6.0/RPMS/bind-8.2.2P7-1.3mdk.i586.rpm
6.0/RPMS/bind-devel-8.2.2P7-1.3mdk.i586.rpm
6.0/RPMS/bind-utils-8.2.2P7-1.3mdk.i586.rpm
6.0/SRPMS/bind-8.2.2P7-1.3mdk.src.rpm
Linux-Mandrake 6.1:
6.1/RPMS/bind-8.2.2P7-1.2mdk.i586.rpm
6.1/RPMS/bind-devel-8.2.2P7-1.2mdk.i586.rpm
6.1/RPMS/bind-utils-8.2.2P7-1.2mdk.i586.rpm
6.1/SRPMS/bind-8.2.2P7-1.2mdk.src.rpm
Linux-Mandrake 7.0:
7.0/RPMS/bind-8.2.2P7-1.2mdk.i586.rpm
7.0/RPMS/bind-devel-8.2.2P7-1.2mdk.i586.rpm
7.0/RPMS/bind-utils-8.2.2P7-1.2mdk.i586.rpm
7.0/SRPMS/bind-8.2.2P7-1.2mdk.src.rpm
Linux-Mandrake 7.1:
7.1/RPMS/bind-8.2.2P7-1.2mdk.i586.rpm
7.1/RPMS/bind-devel-8.2.2P7-1.2mdk.i586.rpm
7.1/RPMS/bind-utils-8.2.2P7-1.2mdk.i586.rpm
7.1/SRPMS/bind-8.2.2P7-1.2mdk.src.rpm
Linux-Mandrake 7.2:
7.2/RPMS/bind-8.2.2P7-1.1mdk.i586.rpm
7.2/RPMS/bind-devel-8.2.2P7-1.1mdk.i586.rpm
7.2/RPMS/bind-utils-8.2.2P7-1.1mdk.i586.rpm
7.2/SRPMS/bind-8.2.2P7-1.1mdk.src.rpm
Conectiva Linux 5.0:
ftp://atualizacoes.conectiva.com.br/4.0/SRPMS/bind-8.2.2P7-1cl.src.rpm
ftp://atualizacoes.conectiva.com.br/4.0/i386/bind-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.0/i386/bind-devel-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.0/i386/bind-doc-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.0/i386/bind-utils-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.0es/SRPMS/bind-8.2.2P7-1cl.src.rpm
ftp://atualizacoes.conectiva.com.br/4.0es/i386/bind-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.0es/i386/bind-devel-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.0es/i386/bind-doc-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.0es/i386/bind-utils-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.1/SRPMS/bind-8.2.2P7-1cl.src.rpm
ftp://atualizacoes.conectiva.com.br/4.1/i386/bind-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.1/i386/bind-devel-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.1/i386/bind-doc-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.1/i386/bind-utils-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.2/SRPMS/bind-8.2.2P7-1cl.src.rpm
ftp://atualizacoes.conectiva.com.br/4.2/i386/bind-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.2/i386/bind-devel-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.2/i386/bind-doc-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/4.2/i386/bind-utils-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.0/SRPMS/bind-8.2.2P7-1cl.src.rpm
ftp://atualizacoes.conectiva.com.br/5.0/i386/bind-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.0/i386/bind-devel-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.0/i386/bind-doc-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.0/i386/bind-utils-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.1/SRPMS/bind-8.2.2P7-1cl.src.rpm
ftp://atualizacoes.conectiva.com.br/5.1/i386/bind-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.1/i386/bind-devel-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.1/i386/bind-doc-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.1/i386/bind-utils-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.1/SRPMS/bind-chroot-8.2.2_P7-2cl.src.rpm
ftp://atualizacoes.conectiva.com.br/5.1/i386/bind-chroot-8.2.2_P7-2cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/ferramentas/ecommerce/SRPMS/bind-8.2.2P7-1cl.src.rpm
ftp://atualizacoes.conectiva.com.br/ferramentas/ecommerce/i386/bind-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/ferramentas/ecommerce/i386/bind-devel-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/ferramentas/ecommerce/i386/bind-doc-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/ferramentas/ecommerce/i386/bind-utils-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/ferramentas/graficas/SRPMS/bind-8.2.2P7-1cl.src.rpm
ftp://atualizacoes.conectiva.com.br/ferramentas/graficas/i386/bind-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/ferramentas/graficas/i386/bind-devel-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/ferramentas/graficas/i386/bind-doc-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/ferramentas/graficas/i386/bind-utils-8.2.2P7-1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.1/SRPMS/bind-8.2.2P7-2cl.src.rpm
ftp://atualizacoes.conectiva.com.br/5.1/i386/bind-8.2.2P7-2cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.1/i386/bind-devel-8.2.2P7-2cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.1/i386/bind-doc-8.2.2P7-2cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.1/i386/bind-utils-8.2.2P7-2cl.i386.rpm
BIND ISC release:
BIND 8.2.2-P7 source package (1.3M):
ftp://ftp.isc.org/isc/bind/src/8.2.2-P7/bind-src.tar.gz
BIND 8.2.2-P7 contrib packages (875K):
ftp://ftp.isc.org/isc/bind/src/8.2.2-P7/bind-contrib.tar.gz
Please enable JavaScript to view the comments powered by Disqus.
blog comments powered by