SUSE-SU-2015:1204-1
Dashboard / Vulnerabilities / SUSE-SU-2015:1204-1
SUSE-SU-2015:1204-1
Summary: Security update for bind
Details: bind was updated to fix two security issues. These security issues were fixed: - CVE-2015-1349: Named in ISC BIND 9.7.0 through 9.9.6 before 9.9.6-P2 and 9.10.x before 9.10.1-P2, when DNSSEC validation and the managed-keys feature are enabled, allowed remote attackers to cause a denial of service (assertion failure and daemon exit, or daemon crash) by triggering an incorrect trust-anchor management scenario in which no key is ready for use (bsc#918330). - CVE-2015-4620: Fixed resolver crash when validating (bsc#936476).
References: https://www.suse.com/support/update/announcement/2015/suse-su-20151204-1/, https://bugzilla.suse.com/918330, https://bugzilla.suse.com/936476, https://www.suse.com/security/cve/CVE-2015-1349, https://www.suse.com/security/cve/CVE-2015-4620
Affected packages
Package
Name: bind
Purl: pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Desktop%2012
Affected ranges
Type: ECOSYSTEM
Events:
