bind9.16-9.16.23-0.22.el8_10.2

エラータID: AXSA:2025-9692:01

リリース日: 
2025/02/21 Friday - 14:58
題名: 
bind9.16-9.16.23-0.22.el8_10.2
影響のあるチャネル: 
Asianux Server 8 for x86_64
Severity: 
High
Description: 

The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly.

Security Fix(es):

* bind: bind9: Many records in the additional section cause CPU exhaustion (CVE-2024-11187)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2024-11187
It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

解決策: 

Update packages.

追加情報: 

N/A

ダウンロード: 

SRPMS
  1. bind9.16-9.16.23-0.22.el8_10.2.src.rpm
    MD5: 8eb345d449a1dc52159eda028475e23f
    SHA-256: 1af2f75c09f0d8da11b89786d4607bab9d6f016540d85a37d4a442afa36b8433
    Size: 5.15 MB

Asianux Server 8 for x86_64
  1. bind9.16-9.16.23-0.22.el8_10.2.x86_64.rpm
    MD5: c965903097bcd67d51af282f04b63c9c
    SHA-256: bfaaf9a9f417cc0e8209b0183c50cf1aa2e77b9042b83deadd72c7980dcabaa8
    Size: 604.48 kB
  2. bind9.16-chroot-9.16.23-0.22.el8_10.2.x86_64.rpm
    MD5: 506896a26471d269255dd1b16cf294ec
    SHA-256: 19290c0ff161bf76b8e9888fc6384e3209ad5f2e5730411c0d559fe34f165c00
    Size: 112.26 kB
  3. bind9.16-devel-9.16.23-0.22.el8_10.2.i686.rpm
    MD5: 5ee1fb2d8a19fc3dff485f31d165107d
    SHA-256: 53a9cdb07bcfaf6f10ea53b0c0f1b2b2fb2887a13526e50a7158d0ad92104893
    Size: 428.27 kB
  4. bind9.16-devel-9.16.23-0.22.el8_10.2.x86_64.rpm
    MD5: 69e0e31103b8e95b16df6b114aeefe51
    SHA-256: c3a18d84741bd66122a288eb79db56b095edb7a546827150c96a42df19536d1f
    Size: 428.24 kB
  5. bind9.16-dnssec-utils-9.16.23-0.22.el8_10.2.x86_64.rpm
    MD5: ceafcd849e905f4519c9a100e6e5de6a
    SHA-256: 66f39f2c2e0bf0e5688bdb1d49b497ccbe782d643f6b0fbcaabdc8f4720b1381
    Size: 245.40 kB
  6. bind9.16-doc-9.16.23-0.22.el8_10.2.noarch.rpm
    MD5: ee945161494d960f84ffe411e15d3727
    SHA-256: 1580c045e76403890e971a27de4cafaf1b7acb9a6a93530035bb3901c696d9a0
    Size: 3.67 MB
  7. bind9.16-libs-9.16.23-0.22.el8_10.2.i686.rpm
    MD5: 9878f75958fe5639ab852d8c37b15f84
    SHA-256: fd2075b555235550425dfe864b052a99d5782c2811dfc991759e652ac844b9c2
    Size: 1.46 MB
  8. bind9.16-libs-9.16.23-0.22.el8_10.2.x86_64.rpm
    MD5: 8212648dc34411961bda5ff450771870
    SHA-256: 245c88612e2bca990f096cd18cca50618274470269700a4a74d9782a41a52628
    Size: 1.36 MB
  9. bind9.16-license-9.16.23-0.22.el8_10.2.noarch.rpm
    MD5: c80138517ea3b18047599ac0f8117a44
    SHA-256: f6fb2fc549bbb42e680cdd5fb457d668b459446fe483f38f01d48925396a6ab9
    Size: 108.49 kB
  10. bind9.16-utils-9.16.23-0.22.el8_10.2.x86_64.rpm
    MD5: f7e96e7f0ba46ff682991b325b8b0d9e
    SHA-256: 031f5a9ee5d21e39fb58018f5523af957320bd6d97cacaf9de542e237a5e78bb
    Size: 290.59 kB
  11. python3-bind9.16-9.16.23-0.22.el8_10.2.noarch.rpm
    MD5: 660a523e753c56d66d3e059f00c0eef7
    SHA-256: 41772b13d6e67f61002aa35afca07321a1da448c04277fe3ab4ee797f1cafe9e
    Size: 156.79 kB