[Secure-testing-commits] r50606 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Apr 13 04:48:33 UTC 2017


Author: carnil
Date: 2017-04-13 04:48:33 +0000 (Thu, 13 Apr 2017)
New Revision: 50606

Modified:
   data/CVE/list
Log:
Add bug references for bind9 issues, #860224, #860225 and #860226

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-04-13 04:19:46 UTC (rev 50605)
+++ data/CVE/list	2017-04-13 04:48:33 UTC (rev 50606)
@@ -13073,15 +13073,15 @@
 	RESERVED
 CVE-2017-3138 [named exits with a REQUIRE assertion failure if it receives a null command string on its control channel]
 	RESERVED
-	- bind9 <unfixed>
+	- bind9 <unfixed> (bug #860226)
 	NOTE: https://kb.isc.org/article/AA-01471
 CVE-2017-3137 [A response packet can cause a resolver to terminate when processing an answer containing a CNAME or DNAME]
 	RESERVED
-	- bind9 <unfixed>
+	- bind9 <unfixed> (bug #860225)
 	NOTE: https://kb.isc.org/article/AA-01466
 CVE-2017-3136 [An error handling synthesized records could cause an assertion failure when using DNS64 with "break-dnssec yes;"]
 	RESERVED
-	- bind9 <unfixed>
+	- bind9 <unfixed> (bug #860224)
 	NOTE: https://kb.isc.org/article/AA-01465
 CVE-2017-3135 [Assertion failure when using DNS64 and RPZ can lead to crash]
 	RESERVED




More information about the Secure-testing-commits mailing list