You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa bind99

Sigurnosni nedostaci programskog paketa bind99

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

Fedora Update Notification
2017-05-06 17:08:23.402094

Name : bind99
Product : Fedora 24
Version : 9.9.9
Release : 4.P8.fc24
Summary : The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) libraries
Description :
BIND (Berkeley Internet Name Domain) is an implementation of the DNS
(Domain Name System) protocols. This package set contains only export
version of BIND libraries, that are used for building ISC DHCP.

Update Information:

Security fix for CVE-2017-3136, CVE-2017-3137 and CVE-2017-3138

[ 1 ] Bug #1441125 – CVE-2017-3136 bind: Incorrect error handling causes assertion failure when using DNS64 with “break-dnssec yes;”
[ 2 ] Bug #1441133 – CVE-2017-3137 bind: Processing a response containing CNAME or DNAME with unusual order can crash resolver
[ 3 ] Bug #1441137 – CVE-2017-3138 bind: REQUIRE assertion failure when null command string on control channel is received

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade bind99’ at the command line.
For more information, refer to the dnf documentation available at

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
package-announce mailing list —
To unsubscribe send an email to

AutorDanijel Kozinovic
Cert idNCERT-REF-2017-05-0028-ADV
More in Preporuke
Sigurnosni nedostaci programskog paketa freetype

Otkriveni su sigurnosni nedostaci u programskom paketu freetype za operacijski sustav Fedora. Otkriveni nedostaci posljedica su prekoračenje spremnika gomile, a...