diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 8d718336dab1..14b070b7ef05 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -58,6 +58,125 @@ Notes: * Do not forget port variants (linux-f10-libxml2, libxml2, etc.) --> + + bind -- denial of service vulnerability + + + bind910 + 9.10.09.10.3P4 + + + bind9-devel + 9.11.0.a20160309 + + + + +

ISC reports:

+
+

A response containing multiple DNS cookies causes servers with + cookie support enabled to exit with an assertion failure.

+
+ +
+ + CVE-2016-2088 + https://kb.isc.org/article/AA-01351 + + + 2016-03-09 + 2016-03-28 + +
+ + + bind -- denial of service vulnerability + + + bind98 + 9.8.8 + + + bind99 + 9.9.09.9.8P4 + + + bind910 + 9.10.09.10.3P4 + + + bind9-devel + 9.11.0.a20160309 + + + FreeBSD + 9.39.3_38 + + + + +

ISC reports:

+
+

A problem parsing resource record signatures for DNAME resource + records can lead to an assertion failure in resolver.c or db.c

+
+ +
+ + CVE-2016-1286 + SA-16:13.bind + https://kb.isc.org/article/AA-01353 + + + 2016-03-09 + 2016-03-28 + +
+ + + bind -- denial of service vulnerability + + + bind98 + 9.8.8 + + + bind99 + 9.9.09.9.8P4 + + + bind910 + 9.10.09.10.3P4 + + + bind9-devel + 9.11.0.a20160309 + + + FreeBSD + 9.39.3_38 + + + + +

ISC reports:

+
+

An error parsing input received by the rndc control channel can + cause an assertion failure in sexpr.c or alist.c.

+
+ +
+ + CVE-2016-1285 + SA-16:13.bind + https://kb.isc.org/article/AA-01352 + + + 2016-03-09 + 2016-03-28 + +
+ salt -- Insecure configuration of PAM external authentication service