[Secure-testing-commits] r13387 - data/CVE

Florian Weimer fw at alioth.debian.org
Thu Nov 26 20:27:31 UTC 2009


Author: fw
Date: 2009-11-26 20:27:31 +0000 (Thu, 26 Nov 2009)
New Revision: 13387

Modified:
   data/CVE/list
Log:
CVE-2009-4022: bind9


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-11-26 18:15:06 UTC (rev 13386)
+++ data/CVE/list	2009-11-26 20:27:31 UTC (rev 13387)
@@ -122,8 +122,12 @@
 	- php-mail 1.1.14-2 (medium; bug #557121)
 	[lenny] - php-mail  1.1.14-1+lenny1
 	[etch] - php-mail 1.1.6-2+etch1
-CVE-2009-4022
+CVE-2009-4022 [BIND 9 cache poisoning through secure domains]
 	RESERVED
+	- bind9 <unfixed> (medium)
+	NOTE: <https://www.isc.org/node/504>
+	NOTE: Only affects installations with trust anchors, but then the
+	NOTE: consequences are quite severe.
 CVE-2009-4020
 	RESERVED
 CVE-2009-4019 [mysql server crashers]




More information about the Secure-testing-commits mailing list