bind-9.11.36-3.el8.1
エラータID: AXSA:2022-3874:03
リリース日:
2022/10/04 Tuesday - 21:16
題名:
bind-9.11.36-3.el8.1
影響のあるチャネル:
Asianux Server 8 for x86_64
Severity:
High
Description:
以下項目について対処しました。
[Security Fix]
- named には、ECDSA アルゴリズムを用いた DNSSEC 検証において
メモリリークが発生する問題があるため、リモートの攻撃者により、
細工した ECDSA 署名を持つレスポンスの送信を介して、サービス
拒否攻撃を可能とする脆弱性が存在します。(CVE-2022-38177)
- named には、EdDSA アルゴリズムを用いた DNSSEC 検証において
メモリリークが発生する問題があるため、リモートの攻撃者により、
細工した EdDSA 署名を持つレスポンスの送信を介して、サービス
拒否攻撃を可能とする脆弱性が存在します。(CVE-2022-38178)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2022-38177
By spoofing the target resolver with responses that have a malformed ECDSA signature, an attacker can trigger a small memory leak. It is possible to gradually erode available memory to the point where named crashes for lack of resources.
By spoofing the target resolver with responses that have a malformed ECDSA signature, an attacker can trigger a small memory leak. It is possible to gradually erode available memory to the point where named crashes for lack of resources.
CVE-2022-38178
By spoofing the target resolver with responses that have a malformed EdDSA signature, an attacker can trigger a small memory leak. It is possible to gradually erode available memory to the point where named crashes for lack of resources.
By spoofing the target resolver with responses that have a malformed EdDSA signature, an attacker can trigger a small memory leak. It is possible to gradually erode available memory to the point where named crashes for lack of resources.
追加情報:
N/A
ダウンロード:
SRPMS
- bind-9.11.36-3.el8.1.src.rpm
MD5: 30ae907e77798118c27f03fabe3b81fb
SHA-256: 528ff3b86b930ba3b04adc2a7a3f23371fa4be3f623f0432c757c8376ef0ba10
Size: 8.13 MB
Asianux Server 8 for x86_64
- bind-9.11.36-3.el8.1.x86_64.rpm
MD5: a7bd7fb085f50dc70d32304f75a2e3cd
SHA-256: df89db4b3dddc823b6ed527cb107171ac515ee35b42ae4b1b7ba4a4469c887b5
Size: 2.13 MB - bind-chroot-9.11.36-3.el8.1.x86_64.rpm
MD5: a36f9d18ae32973cc4917d5a60fc6e34
SHA-256: 191ec3c4467e08e3bd81413202078c325ad357d823a43b44f491d3a23e6dde57
Size: 104.33 kB - bind-devel-9.11.36-3.el8.1.x86_64.rpm
MD5: 63ee7d8ea4bb2f362d77700524288f0b
SHA-256: ce702c75fbdaeeccf49ecfd8b4953a355cde3872f6dc1a00e294c77b27a2df8d
Size: 176.84 kB - bind-export-devel-9.11.36-3.el8.1.x86_64.rpm
MD5: 4c987e8bb41633c41a8fa4b39767bb02
SHA-256: e4b28db3184e7e32a536357188eb86e3c815e12fa437f4507bad86da10a537b5
Size: 406.09 kB - bind-export-libs-9.11.36-3.el8.1.x86_64.rpm
MD5: f6938f0031e92f25a2565aca42c37cd5
SHA-256: 00c519c2a739565a4b5fbd2c2d597c739c898407a54703a96cfe9672e0409d9e
Size: 1.14 MB - bind-libs-9.11.36-3.el8.1.x86_64.rpm
MD5: bd2cccc822550d7a6b64990ebcbade64
SHA-256: fec6529be3dc97084259c97935a18eaa707f1970c838bf877460f27fe8f2d397
Size: 173.78 kB - bind-libs-lite-9.11.36-3.el8.1.x86_64.rpm
MD5: fba14001a9860d09fd23a49fa4d2103a
SHA-256: 9ae99d303e005b8a49446be1c8f79f9ad9db260560b32d483feb2d2aeb8dc980
Size: 1.18 MB - bind-license-9.11.36-3.el8.1.noarch.rpm
MD5: 5beae182c3d87761edf7439cd5863fc1
SHA-256: b8905cce43ba2f84697cba499154a681e4412fd6f84bf63de758afc55b6ec890
Size: 102.21 kB - bind-lite-devel-9.11.36-3.el8.1.x86_64.rpm
MD5: fc8b0f9cabba92006903f89f732f66ee
SHA-256: 9b78f93a028adfea7b9495a84850df132c9a6f6247e4c3db91c83829227968c1
Size: 399.36 kB - bind-pkcs11-9.11.36-3.el8.1.x86_64.rpm
MD5: 9958b2a3184c358cce4ff665c1f2f0b8
SHA-256: 1c6667b7a37eacd4a452c52b4c52eea71e6cdb7a954ff97116d9fc6655d9afcf
Size: 397.20 kB - bind-pkcs11-devel-9.11.36-3.el8.1.x86_64.rpm
MD5: 0f2d5cbbc61023a808090dc3e7ce854f
SHA-256: 0e327f2311ef7ae04c82db0b3d2731151e328aa4e54471c3156c4eaea0fa5917
Size: 114.41 kB - bind-pkcs11-libs-9.11.36-3.el8.1.x86_64.rpm
MD5: 740bc7d0649b40844595d09e57476cad
SHA-256: 9643e1002ac29f2328d627f7f3e3547e2a6850a9a2c2f61b42bc6815c51dfdbc
Size: 1.13 MB - bind-pkcs11-utils-9.11.36-3.el8.1.x86_64.rpm
MD5: fedeb1d9e25fe4dd775b9ee2e827ecb3
SHA-256: 47e4a23334e0111b71e4f831054074c54a44548af996caf24a98314846fe4aed
Size: 259.37 kB - bind-sdb-9.11.36-3.el8.1.x86_64.rpm
MD5: 7216e19b909bc243f3682efc50f840c9
SHA-256: 53521431ac89e89d97575df27ce3433e2770593225732dea2c870489cbd5077c
Size: 457.23 kB - bind-sdb-chroot-9.11.36-3.el8.1.x86_64.rpm
MD5: fd534ce5442a892343c2e0e930826d7d
SHA-256: 42ff84e736e6776590951b73a0b87be51fadd491b89adcf95304312ea94255da
Size: 103.96 kB - bind-utils-9.11.36-3.el8.1.x86_64.rpm
MD5: 7aae753376eccf77996801b780b1f751
SHA-256: 005137da6b60d54c24f8b145dd1f2abecdfee7ac71b9eb301e106f7816a3ae44
Size: 450.63 kB - python3-bind-9.11.36-3.el8.1.noarch.rpm
MD5: 1096ed60e8f689d58400b46ebef3bd33
SHA-256: 042e34ebcbf762eb6946d804c3878b4e313ed2b2aced7e5110c193724ff8ea3b
Size: 149.48 kB - bind-devel-9.11.36-3.el8.1.i686.rpm
MD5: c2142f638342e8c84560cd5ee9e80345
SHA-256: 7ab5ced1a0218c5aea9145cfb210be849ee9b2de3a31ea05f7ba4ec1f1af0efc
Size: 176.84 kB - bind-export-devel-9.11.36-3.el8.1.i686.rpm
MD5: a6061f92cb1dfed406641188199ccaf5
SHA-256: 2af0aab307232ac47b9a2ce60205c3ff4e2011e9b15c204cd769d77145d97761
Size: 406.08 kB - bind-export-libs-9.11.36-3.el8.1.i686.rpm
MD5: 34f45708c870e4d1f31b0a40cf26dcfe
SHA-256: f9d6cee0c68fa7b9bb32a0b88c4b4ff7228a41dc4d5aa7a2088bee1115bacb37
Size: 1.21 MB - bind-libs-9.11.36-3.el8.1.i686.rpm
MD5: 70092405019016794a274c327dfc4505
SHA-256: 63d119c715c175378f0949b6d06127c010fc8e27425fdbc4206c8a58e7ce8c90
Size: 179.34 kB - bind-libs-lite-9.11.36-3.el8.1.i686.rpm
MD5: 2840846d5d0e0f334c8fcde9f35cacd9
SHA-256: 426abd63a5b40ae9290080f8b3f1d45e0d8338dbce47cef093be7b5f1b5acb1f
Size: 1.26 MB - bind-lite-devel-9.11.36-3.el8.1.i686.rpm
MD5: 52748dc3aaf8fa63db168f33e29117b3
SHA-256: b437dea3c8501dbc400f5cce956d6409775a40edfbab6c9eda0c876b4fd79a3a
Size: 399.35 kB - bind-pkcs11-devel-9.11.36-3.el8.1.i686.rpm
MD5: b2476e7335cd950544154a64c98d169a
SHA-256: 9395726a0553a0dda3a9066af6fea7ebc672072cea9498f29e225f403be7ab37
Size: 114.42 kB - bind-pkcs11-libs-9.11.36-3.el8.1.i686.rpm
MD5: 3a7446551247bca0e37ebc8e4a9f98c1
SHA-256: 79f0fc70a9e3384b0452ac3c5b5da13ea3c596caa079443fd54e1b40949d1607
Size: 1.21 MB