bind-9.16.23-24.el9_5.3

エラータID: AXSA:2025-9697:03

Release date: 
Tuesday, February 25, 2025 - 11:37
Subject: 
bind-9.16.23-24.el9_5.3
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
High
Description: 

The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly.

Security Fix(es):

* bind: bind9: Many records in the additional section cause CPU exhaustion (CVE-2024-11187)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2024-11187
It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. bind-9.16.23-24.el9_5.3.src.rpm
    MD5: 91c9fc4c78362a5c63b62918af2a4a02
    SHA-256: cc25d0eec061ae2603b100433eaeceacba13cce7aefaec29272bca942eb4f32c
    Size: 5.09 MB

Asianux Server 9 for x86_64
  1. bind-9.16.23-24.el9_5.3.x86_64.rpm
    MD5: 03e323b384af7412a1b03509cab9a6fe
    SHA-256: 75fb89babbbbe2e437414a70ebacd5a93e2a8f75b3404242791de2937ebd45fd
    Size: 501.04 kB
  2. bind-chroot-9.16.23-24.el9_5.3.x86_64.rpm
    MD5: 47ba2a614113738d9ad4e80cb5b63a5f
    SHA-256: e3ed1a13f27be9de83e87eacfb8e93ab6b0442b5b324f7a67f545e9e71e62dc3
    Size: 16.05 kB
  3. bind-devel-9.16.23-24.el9_5.3.i686.rpm
    MD5: 72554e6d8a2020e61a2a159b0460fbbb
    SHA-256: 8ba052151677b5e378a17edaf3682b308a99eb5bc168e16aa982d4b2f84cd922
    Size: 359.44 kB
  4. bind-devel-9.16.23-24.el9_5.3.x86_64.rpm
    MD5: d6c16ccd3304547d5ad5eda96a833250
    SHA-256: 2ff5dd9c0fd9de99414df22ab8f459f2029ea4d50ba385eaec3c770a2030bdde
    Size: 359.43 kB
  5. bind-dnssec-doc-9.16.23-24.el9_5.3.noarch.rpm
    MD5: e65a7b19e81d02e94b2813bbf4b383b9
    SHA-256: 2908b2ef8704fe2ddbea67b98fac209e42855cdd57b819fcaffc95ae5e4723ac
    Size: 44.63 kB
  6. bind-dnssec-utils-9.16.23-24.el9_5.3.x86_64.rpm
    MD5: 427a6681c572b5186fdbb4db8bdec387
    SHA-256: 6cb0f6e055946cd5c287085523766cc151aabe215c106a7e6530680bd5eab17e
    Size: 113.75 kB
  7. bind-doc-9.16.23-24.el9_5.3.noarch.rpm
    MD5: fe122df1fc2c027454a6c0416763ab38
    SHA-256: a22a9d4a8c943c038989cd3046fc26007ddefa954e3f5518f9b2054946f80260
    Size: 2.08 MB
  8. bind-libs-9.16.23-24.el9_5.3.i686.rpm
    MD5: 0f55324bc11400100bb34155426d398e
    SHA-256: 01f4a5fd167a804382cfd94ea65066be63f04e5899fc892daf3167c333b1b3ef
    Size: 1.34 MB
  9. bind-libs-9.16.23-24.el9_5.3.x86_64.rpm
    MD5: 349f307c8f861a00722badfc3275f098
    SHA-256: 28de68fc1c468785052c5fe3f088a63f49c9b531e3dc1e5138c93e85045a102b
    Size: 1.24 MB
  10. bind-license-9.16.23-24.el9_5.3.noarch.rpm
    MD5: 2e6e72796d7d0f5651579abc5c1e1b77
    SHA-256: 80cc11c07aeb290cab946fc1eca56680ec7aaa66c188c0368d225818dfe0435c
    Size: 12.16 kB
  11. bind-utils-9.16.23-24.el9_5.3.x86_64.rpm
    MD5: 9e5ea52ba7d9009fed4524047338bed4
    SHA-256: 3f8b5420bcb8555e1390a88ec9556b5191f5dda664a90515d1baa355dc222723
    Size: 207.13 kB
  12. python3-bind-9.16.23-24.el9_5.3.noarch.rpm
    MD5: 3462314d053ddb3feeb97daadf04dd33
    SHA-256: e9a892301747c40e4f95206041c73c156f11726b73ea2b592fe5b4c6615e3327
    Size: 70.86 kB