[ MDVSA-2015:054 ] bind

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

 _______________________________________________________________________

 Mandriva Linux Security Advisory                         MDVSA-2015:054
 http://www.mandriva.com/en/support/security/
 _______________________________________________________________________

 Package : bind
 Date    : March 4, 2015
 Affected: Business Server 1.0
 _______________________________________________________________________

 Problem Description:

 Updated bind packages fix security vulnerability:
 
 Jan-Piet Mens discovered that the BIND DNS server would crash when
 processing an invalid DNSSEC key rollover, either due to an error
 on the zone operator's part, or due to interference with network
 traffic by an attacker. This issue affects configurations with the
 directives "dnssec-lookaside auto;" (as enabled in the Mageia default
 configuration) or "dnssec-validation auto;" (CVE-2015-1349).
 _________________________________________________________

Leave a Reply