[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-5734/bind9

Salvatore Bonaccorso carnil at debian.org
Wed Feb 28 20:34:57 UTC 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0ff3fa0f by Salvatore Bonaccorso at 2018-02-28T21:34:00+01:00
Add CVE-2018-5734/bind9

This issue does not affect any released version but only the "Supported
Preview Edition/Subscription Edition" versions of BIND.

Cf. https://kb.isc.org/article/AA-01562/74/CVE-2018-5734 for details.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -5238,8 +5238,10 @@ CVE-2018-5735 [assertion failure in validator.c:1858]
 	NOTE: Mark as fixed version the 1:9.9.3.dfsg.P2-1 as the related code was
 	NOTE: added upstream in 9.9.3b1. The issue though does not affect bind9 upstream
 	NOTE: and is only triggered as described in #889285.
-CVE-2018-5734
+CVE-2018-5734 [A malformed request can trigger an assertion failure in badcache.c]
 	RESERVED
+	- bind9 <not-affected> (Only affects Supported Preview Edition/Subscription Edition)
+	NOTE: https://kb.isc.org/article/AA-01562/74/CVE-2018-5734
 CVE-2018-5733
 	RESERVED
 CVE-2018-5732



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/0ff3fa0f6d11f1a46d03390c9fd8c8d249f94f16

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/0ff3fa0f6d11f1a46d03390c9fd8c8d249f94f16
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180228/1ef3a658/attachment.html>


More information about the Secure-testing-commits mailing list