ELSA-2021-1853

ELSA-2021-1853 - unbound security, bug fix, and enhancement update

Type:SECURITY
Severity:MODERATE
Release Date:2021-05-25

Description


[1.7.3-15]
- Fix SPEC file to not check md5 mtime and size of /var/lib/unbound/root.key
- Resolves: rhbz#1714175
- Use system-wide crypto policy setting (PROFILE=SYSTEM) instead of custom setting
- Resolves: rhbz#1842837
- Enable additional logging in unbound
- Resolves: rhbz#1850460
- security hardening from x41 report
- Resolves: rhbz#1859933
- symbolic link traversal when writing PID file
- Resolves: rhbz#1899058


Related CVEs


CVE-2019-25038
CVE-2019-25040
CVE-2019-25042
CVE-2019-25032
CVE-2019-25034
CVE-2019-25035
CVE-2019-25036
CVE-2019-25037
CVE-2019-25039
CVE-2019-25041
CVE-2020-28935

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) unbound-1.7.3-15.el8.src.rpm46915f0eb734881c3613d77e94f6b9c0-
python3-unbound-1.7.3-15.el8.aarch64.rpm3076b0dd0e02e8880447c2cd20ba0a4e-
unbound-1.7.3-15.el8.aarch64.rpmabf04732a82a5fa5572db919d1757c17-
unbound-devel-1.7.3-15.el8.aarch64.rpme516f334efb74bce0f70b79cb0f14411-
unbound-libs-1.7.3-15.el8.aarch64.rpm3de77be74b41291bb494210e2fa2b686-
Oracle Linux 8 (x86_64) unbound-1.7.3-15.el8.src.rpm46915f0eb734881c3613d77e94f6b9c0-
python3-unbound-1.7.3-15.el8.x86_64.rpm60873b96accc1a2bf0c8ab1f87873d1e-
unbound-1.7.3-15.el8.x86_64.rpm785548ffb2edb864ce51f41878fa3429-
unbound-devel-1.7.3-15.el8.i686.rpm9808f56f246824a957a913449c258b11-
unbound-devel-1.7.3-15.el8.x86_64.rpme5bf4620e93b0cf669c6230e4115b112-
unbound-libs-1.7.3-15.el8.i686.rpm4edc7465c0eeb4ded19f3e2ae09e7a2a-
unbound-libs-1.7.3-15.el8.x86_64.rpmec816f1806abda71e5faff312973460b-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete