diff --git a/external/bsd/bind/dist/CHANGES b/external/bsd/bind/dist/CHANGES index 491ca7a90ab1..bdbd35a5aaf7 100644 --- a/external/bsd/bind/dist/CHANGES +++ b/external/bsd/bind/dist/CHANGES @@ -1,3 +1,9 @@ + --- 9.10.2-P3 released --- + +4165. [security] A failure to reset a value to NULL in tkey.c could + result in an assertion failure. (CVE-2015-5477) + [RT #40046] + --- 9.10.2-P2 released --- 4138. [bug] An uninitialized value in validator.c could result diff --git a/external/bsd/bind/dist/README b/external/bsd/bind/dist/README index 00cc843dab27..b0cb7c977e51 100644 --- a/external/bsd/bind/dist/README +++ b/external/bsd/bind/dist/README @@ -51,6 +51,11 @@ BIND 9 For up-to-date release notes and errata, see http://www.isc.org/software/bind9/releasenotes +BIND 9.10.2-P3 + + BIND 9.10.2-P3 is a security release addressing the flaw + described in CVE-2015-5477. + BIND 9.10.2-P2 BIND 9.10.2-P2 is a security release addressing the flaw @@ -62,7 +67,7 @@ BIND 9.10.2-P1 bugs recently found in the response-policy zones (RPZ) implementation in BIND 9.10. These mostly affect servers that have multiple frequently-updated response-policy - zones. Operators who are not using RPZ need not upgrade. + zones. BIND 9.10.2 diff --git a/external/bsd/bind/dist/doc/arm/Bv9ARM.ch04.html b/external/bsd/bind/dist/doc/arm/Bv9ARM.ch04.html index 226a0a14930d..855290358846 100644 --- a/external/bsd/bind/dist/doc/arm/Bv9ARM.ch04.html +++ b/external/bsd/bind/dist/doc/arm/Bv9ARM.ch04.html @@ -14,7 +14,7 @@ - OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR - PERFORMANCE OF THIS SOFTWARE. --> - +
@@ -2294,6 +2294,6 @@ $ORIGIN 0.0.0.0.0.0.0.0.8.b.d.0.1.0.0.2.ip6.arpa. -BIND 9.10.2-P2
+BIND 9.10.2-P3
diff --git a/external/bsd/bind/dist/doc/arm/Bv9ARM.ch06.html b/external/bsd/bind/dist/doc/arm/Bv9ARM.ch06.html index 526a58d411df..2167bee33738 100644 --- a/external/bsd/bind/dist/doc/arm/Bv9ARM.ch06.html +++ b/external/bsd/bind/dist/doc/arm/Bv9ARM.ch06.html @@ -14,7 +14,7 @@ - OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR - PERFORMANCE OF THIS SOFTWARE. --> - + @@ -12150,6 +12150,6 @@ HOST-127.EXAMPLE. MX 0 . -BIND 9.10.2-P2
+BIND 9.10.2-P3
diff --git a/external/bsd/bind/dist/doc/arm/Bv9ARM.ch07.html b/external/bsd/bind/dist/doc/arm/Bv9ARM.ch07.html index 30de8de85ce2..235c0ac3c47e 100644 --- a/external/bsd/bind/dist/doc/arm/Bv9ARM.ch07.html +++ b/external/bsd/bind/dist/doc/arm/Bv9ARM.ch07.html @@ -14,7 +14,7 @@ - OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR - PERFORMANCE OF THIS SOFTWARE. --> - + @@ -247,6 +247,6 @@ zone "example.com" { -BIND 9.10.2-P2
+BIND 9.10.2-P3
diff --git a/external/bsd/bind/dist/doc/arm/Bv9ARM.ch08.html b/external/bsd/bind/dist/doc/arm/Bv9ARM.ch08.html index 5be2582821dd..190a54915267 100644 --- a/external/bsd/bind/dist/doc/arm/Bv9ARM.ch08.html +++ b/external/bsd/bind/dist/doc/arm/Bv9ARM.ch08.html @@ -14,7 +14,7 @@ - OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR - PERFORMANCE OF THIS SOFTWARE. --> - + @@ -135,6 +135,6 @@ -BIND 9.10.2-P2
+BIND 9.10.2-P3
diff --git a/external/bsd/bind/dist/doc/arm/Bv9ARM.ch09.html b/external/bsd/bind/dist/doc/arm/Bv9ARM.ch09.html index a575847df222..6086d0af9840 100644 --- a/external/bsd/bind/dist/doc/arm/Bv9ARM.ch09.html +++ b/external/bsd/bind/dist/doc/arm/Bv9ARM.ch09.html @@ -14,7 +14,7 @@ - OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR - PERFORMANCE OF THIS SOFTWARE. --> - + @@ -45,7 +45,7 @@Table of Contents
This document summarizes changes since BIND 9.10.2:
++ BIND 9.10.2-P3 addresses a security issue described in + CVE-2015-5477. +
BIND 9.10.2-P2 addresses a security issue described in CVE-2015-4620. @@ -97,17 +101,29 @@
- On servers configured to perform DNSSEC validation an + A specially crafted query could trigger an assertion failure + in message.c. +
++ This flaw was discovered by Jonathan Foote, and is disclosed + in CVE-2015-5477. [RT #39795] +
++ On servers configured to perform DNSSEC validation, an assertion failure could be triggered on answers from a specially configured server.
This flaw was discovered by Breno Silveira Soares, and is disclosed in CVE-2015-4620. [RT #39795] -
-BIND 9.10.2-P2
+BIND 9.10.2-P3
diff --git a/external/bsd/bind/dist/doc/arm/Bv9ARM.html b/external/bsd/bind/dist/doc/arm/Bv9ARM.html index f4cec28f7e97..3e08839a8fd1 100644 --- a/external/bsd/bind/dist/doc/arm/Bv9ARM.html +++ b/external/bsd/bind/dist/doc/arm/Bv9ARM.html @@ -14,7 +14,7 @@ - OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR - PERFORMANCE OF THIS SOFTWARE. --> - + @@ -41,7 +41,7 @@BIND Version 9.10.2-P2
BIND Version 9.10.2-P3
Copyright 2004-2015 Internet Systems Consortium, Inc. ("ISC")
Copyright 2000-2003 Internet Software Consortium.
BIND 9.10.2-P2
+BIND 9.10.2-P3
diff --git a/external/bsd/bind/dist/doc/arm/Bv9ARM.pdf b/external/bsd/bind/dist/doc/arm/Bv9ARM.pdf index 5f2cbbdbd991..968ed506cf8d 100755 --- a/external/bsd/bind/dist/doc/arm/Bv9ARM.pdf +++ b/external/bsd/bind/dist/doc/arm/Bv9ARM.pdf @@ -1173,7 +1173,7 @@ endobj << /S /GoTo /D (section.A.1) >> endobj 788 0 obj -(A.1 Release Notes for BIND Version 9.10.2-P2) +(A.1 Release Notes for BIND Version 9.10.2-P3) endobj 789 0 obj << /S /GoTo /D (subsection.A.1.1) >> @@ -1537,7 +1537,7 @@ endobj /Filter /FlateDecode >> stream -xڍMOA+zÖ35hlC"KXe`&v'aH䲇=*r[[3աzG1ǠP5g!J5\U1Sd)*\j:O&R77kKۺY÷reL)<.Gb:omGem϶!35g!ȄR>KW.X28ޱIaz"EW$/[ɮ0"cx +xڍMOA+zÖ35hlC"KXe`&v'aH䲇=*r[[3աzG1ǠP5g!J5\U1Sd)*\j:O&R77kKۺY÷reL)<.Gb:omGem϶!35g!ȄR>\q[]fU0dp"cD|[I_M]1+`vE]d7/ keendstream endobj 1026 0 obj << /Type /Page @@ -1573,12 +1573,12 @@ stream HtUI$7+bۆOcP}`LU76 T$.A嵖~~-Ǐtr??ZogsF)owlߎEKO!Zq[oQ|;`KGQ$h=KZU_*O!ˬ萉7*WYLDmz[n>?|%6K i?Қ)0*߃2!}jrS[21ZGAur~ωeT1'IHGG`kfwaFFBA[c)L4SzZӼSFDZІ9>H -JxiO@-Mx_OC8:JXl0$(v~FCmj4QzЌT$ +JxiO@-Mx_OC8:JXl0$(v~FCmj4QzЌT$ 5[F3fϐAkl0,'XIoy*#A?+E#;JpUQ< F ReBC[Wz%A2NV -BqՕl9u +BqՕl9u נ^D5 ]SHX4o cUrex"E]`غ:AcѶ}oxbt^fOPt16 ̋<{a4()tAtR[bvL>o[ճ\AY`Isz$IO -!=vGc I#/'~<1RPyl1Ͷw1 чd }a -9b :F">64~0IGDذ$tM%ZGȃI/z+ +!=vGc I#/'~<1RPyl1Ͷw1 чd }a #fFރY}A +9b :F">64~0IGDذ$tM%ZGȃI/z+ 0huendstream endobj 1039 0 obj << @@ -1643,8 +1643,8 @@ endobj >> stream Hb``2ptqre``+) -rwRR`? -KRSj!ABPi +rwRR`? > v^~^*vD_)p% ?@lZh dg "I`($>dCW@$ ]>f aˀ% {*23J---SR+KRs< +KRSj!ABPi 5Zho @p2A!@riQdL0cR?1^:Sbj Oendstream endobj 1046 0 obj [/View/Design] @@ -1681,29 +1681,29 @@ stream +?V׃^9~+Ӻ"O.l=xg;t=5w\ txŵV*jtם^g\zQCq%_W8==\w꺿NTcׁ߭_|a!EyҺ0ABۅ<絔qР>k¾x\Hju|sޏa]qw^W]صq=vn=K6M.+++KLPsȢ$nNh}'4"?+Up>p=/+^\I|u=?Ƴu{}ԵVw .}QQnעWwҺ{2 ?$\|@߅Y++qN"#1ƥǶό>)u$Zmnɾ_1ǜrYG./*·G=kIM[-[v^tqw\".ؾp^O "Bjhfdb`ޅIqVu(.<)NVƩxո eB>b j7 >]!X^[w}B?z)bַ{_[s65Y^w~ ZK~EcVBCdž"-pE]N`/.X.rr~d[\n_Vˋ\_\.]uctP 3mu[G?wNWV^,I(iT|TysY!sFH*wyZ