SUSE-SU-2016:0825-1
Dashboard / Vulnerabilities / SUSE-SU-2016:0825-1
SUSE-SU-2016:0825-1
Summary: Security update for bind
Details: This update for bind fixes the following issues: Fix two assertion failures that can lead to a remote denial of service attack: * CVE-2016-1285: An error when parsing signature records for DNAME can lead to named exiting due to an assertion failure. (bsc#970072) * CVE-2016-1286: An error when parsing signature records for DNAME records having specific properties can lead to named exiting due to an assertion failure in resolver.c or db.c. (bsc#970073)
References: https://www.suse.com/support/update/announcement/2016/suse-su-20160825-1/, https://bugzilla.suse.com/970072, https://bugzilla.suse.com/970073, https://www.suse.com/security/cve/CVE-2016-1285, https://www.suse.com/security/cve/CVE-2016-1286
Affected packages
Package
Name: bind
Purl: pkg:rpm/suse/bind&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4
Affected ranges
Type: ECOSYSTEM
Events:
