openSUSE-SU-2018:1462-1

    Dashboard / Vulnerabilities / openSUSE-SU-2018:1462-1

    openSUSE-SU-2018:1462-1

    Published: 29 May 2018Last Modified: 4 Feb 2026
    Upstream:
    Aliases:

    Summary: Security update for pdns

    Details: pdns was updated to 4.1.2. Security fixes: * Dnsreplay: bail out on a too small outgoing buffer (CVE-2018-1046 bsc#1092540) Improvements: * API: increase serial after dnssec related updates * Auth: lower ‘packet too short’ loglevel * Make check-zone error on rows that have content but shouldn’t * Auth: avoid an isane amount of new backend connections during an axfr * Report unparseable data in stoul invalid_argument exception * Backport: recheck serial when axfr is done * Backport: add tcp support for alias Bug Fixes: * Auth: allocate new statements after reconnecting to postgresql * Auth-bindbackend: only compare ips in ismaster() (Kees Monshouwer) * Rather than crash, sheepishly report no file/linenum * Document undocumented config vars * Backport #6276 (auth 4.1.x): prevent cname + other data with dnsupdate Misc fixes: * Move includes around to avoid boost L conflict * Backport: update edns option code list * Auth: link dnspcap2protobuf against librt when needed * Fix a warning on botan >= 2.5.0 * Auth 4.1.x: unbreak build

    Affected packages

    Package

    Name: pdns

    Purl: pkg:rpm/suse/pdns&distro=SUSE%20Package%20Hub%2012%20SP1

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -4.1.2-8.1

    Affected versions

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High