ELSA-2024-5390

ELSA-2024-5390 - bind9.16 security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2024-08-14

Description


[32:9.16.23-0.22]
- Minor fix of reclimit test backport (CVE-2024-1737)

[32:9.16.23-0.21]
- Backport addition of max-records-per-type and max-records-per-type options
(CVE-2024-1737)

[32:9.16.23-0.20]
- Resolve CVE-2024-1975
- Resolve CVE-2024-1737
- Resolve CVE-2024-4076
- Add ability to change runtime limits for max types and records per name

[32:9.16.23-0.19]
- Add few more explicit conflicts with bind subpackages (RHEL-2208)

[32:9.16.23-0.18]
- Prevent crashing at masterformat system test (CVE-2023-6516)

[32:9.16.23-0.17]
- Prevent increased CPU load on large DNS messages (CVE-2023-4408)
- Prevent assertion failure when nxdomain-redirect is used with
RFC 1918 reverse zones (CVE-2023-5517)
- Prevent assertion failure if DNS64 and serve-stale is used (CVE-2023-5679)
- Specific recursive query patterns may lead to an out-of-memory
condition (CVE-2023-6516)
- Prevent increased CPU consumption in DNSSEC validator (CVE-2023-50387
CVE-2023-50868)
- Import tests for large DNS messages fix
- Add downstream change complementing CVE-2023-50387


Related CVEs


CVE-2024-1975
CVE-2024-1737
CVE-2024-4076

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) bind9.16-9.16.23-0.22.el8_10.src.rpme733744d0550bc4b3b41b07f4634416bd4d4aeaaf7b9713e24944cc3ce818718-ol8_aarch64_appstream
bind9.16-9.16.23-0.22.el8_10.src.rpme733744d0550bc4b3b41b07f4634416bd4d4aeaaf7b9713e24944cc3ce818718-ol8_aarch64_codeready_builder
bind9.16-9.16.23-0.22.el8_10.aarch64.rpm05c6afd9dbed57d6595e28cf55261f5fab24331a7a995bf474e73d7b0f454c9f-ol8_aarch64_appstream
bind9.16-chroot-9.16.23-0.22.el8_10.aarch64.rpm3cf7f2f47aa89968881c9a6760c03cf8076299637ae7fd2706f194a24f7e3e2f-ol8_aarch64_appstream
bind9.16-devel-9.16.23-0.22.el8_10.aarch64.rpmca3abb93c374d4388f7ec01f96233a91fdbbb2c6c52582ff4bb4fd85470d149e-ol8_aarch64_codeready_builder
bind9.16-dnssec-utils-9.16.23-0.22.el8_10.aarch64.rpm2cf78264659b093a78df8ed84ee347106866d67fc0852e91bd37fdd074f9572a-ol8_aarch64_appstream
bind9.16-doc-9.16.23-0.22.el8_10.noarch.rpm2a6d9eb0d4c7d58e0a207e9719a6ddba98268e4643ed552767f0379a2176bf40-ol8_aarch64_codeready_builder
bind9.16-libs-9.16.23-0.22.el8_10.aarch64.rpm755f2819abe7dafb8e7ab971a7809134a3966f8f9c8ccb7b2fa4dcba55ea3f3f-ol8_aarch64_appstream
bind9.16-license-9.16.23-0.22.el8_10.noarch.rpm8a9f5cabffbe9ef80c338efc1012d592b324e800dc348e24f912fb5b570c8b50-ol8_aarch64_appstream
bind9.16-utils-9.16.23-0.22.el8_10.aarch64.rpm1679a6de1831397e7108b619a9a0a01ab555f3915e6b8f9e97fbadea4d32df7d-ol8_aarch64_appstream
python3-bind9.16-9.16.23-0.22.el8_10.noarch.rpm71320026bd6ee81039211dc376637409c389d3316fc9b6c61facf2961d3f151b-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) bind9.16-9.16.23-0.22.el8_10.src.rpme733744d0550bc4b3b41b07f4634416bd4d4aeaaf7b9713e24944cc3ce818718-ol8_x86_64_appstream
bind9.16-9.16.23-0.22.el8_10.src.rpme733744d0550bc4b3b41b07f4634416bd4d4aeaaf7b9713e24944cc3ce818718-ol8_x86_64_codeready_builder
bind9.16-9.16.23-0.22.el8_10.x86_64.rpm04ffbbda436eb7b9c455cf9667ea4e1e10f67f9c35569bd5e6beda86fcc8a863-ol8_x86_64_appstream
bind9.16-chroot-9.16.23-0.22.el8_10.x86_64.rpm9b7009aca6cca466983d58e31fc543282aa66a75529c7fd78c2298d01116eac5-ol8_x86_64_appstream
bind9.16-devel-9.16.23-0.22.el8_10.i686.rpm07b9a23dbbc10f6750a344d17713a8cd52d400254a09dff039f3f214fd70acf4-ol8_x86_64_codeready_builder
bind9.16-devel-9.16.23-0.22.el8_10.x86_64.rpmdceb2869f22881746c52aa1c8359fc6405f4b2e0672eac396a379e79f557d5c8-ol8_x86_64_codeready_builder
bind9.16-dnssec-utils-9.16.23-0.22.el8_10.x86_64.rpm491b18291576cb1ceb80239322cc283351fbd7e545e905bf14c26c46b1c9121e-ol8_x86_64_appstream
bind9.16-doc-9.16.23-0.22.el8_10.noarch.rpm2a6d9eb0d4c7d58e0a207e9719a6ddba98268e4643ed552767f0379a2176bf40-ol8_x86_64_codeready_builder
bind9.16-libs-9.16.23-0.22.el8_10.i686.rpm4ce37e7e8b99fb635111d0cfc05d04619b3eff791751023e18f8c6a8cb087d96-ol8_x86_64_codeready_builder
bind9.16-libs-9.16.23-0.22.el8_10.x86_64.rpm40d8ed1d72864dbcab3783bf28f93d879677885498db49695d3309bb59ee47d8-ol8_x86_64_appstream
bind9.16-license-9.16.23-0.22.el8_10.noarch.rpm8a9f5cabffbe9ef80c338efc1012d592b324e800dc348e24f912fb5b570c8b50-ol8_x86_64_appstream
bind9.16-utils-9.16.23-0.22.el8_10.x86_64.rpm9fd49be9b5dcd79e5ee26b6c9dd1221451787bc724164a3add4d3897e73180f8-ol8_x86_64_appstream
python3-bind9.16-9.16.23-0.22.el8_10.noarch.rpm71320026bd6ee81039211dc376637409c389d3316fc9b6c61facf2961d3f151b-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete