-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 16 Jul 2024 17:26:47 +0200 Source: bind9 Architecture: source Version: 1:9.20.0-1 Distribution: unstable Urgency: high Maintainer: Debian DNS Team <team+dns@tracker.debian.org> Changed-By: Ondřej Surý <ondrej@debian.org> Changes: bind9 (1:9.20.0-1) unstable; urgency=high . * New upstream version 9.20.0 - CVE-2024-0760: A flood of DNS messages over TCP may make the server unstable - CVE-2024-1737: BIND's database will be slow if a very large number of RRs exist at the same name - CVE-2024-1975: SIG(0) can be used to exhaust CPU resources - CVE-2024-4076: Assertion failure when serving both stale cache data and authoritative zone content Checksums-Sha1: dcd3b6d09df74770f19bcb6437a3d472736ed411 3034 bind9_9.20.0-1.dsc fa59c5fc0d2b41bd52249cf0957cfdf3cb58e46b 5760416 bind9_9.20.0.orig.tar.xz 129bfce618f80843e555318e237629265e18e4fa 59436 bind9_9.20.0-1.debian.tar.xz 98940162d62c832f333e51f171d6a306f2d7fe7b 15528 bind9_9.20.0-1_amd64.buildinfo Checksums-Sha256: 68a733dfdf12ab1da93c635a750b0f4a12fc472f8c2497ce1faf0818b7c9cf82 3034 bind9_9.20.0-1.dsc cc580998017b51f273964058e8cb3aa5482bc785243dea71e5556ec565a13347 5760416 bind9_9.20.0.orig.tar.xz 3b17adf316a60ea5cb7465f9ccc238a3ece995e53de1d48b6d7cf8588104a4ac 59436 bind9_9.20.0-1.debian.tar.xz 53cdd61b70631b0d9d2b38da83a3441d7ff3b6bf30dea7ec76468a92b6948136 15528 bind9_9.20.0-1_amd64.buildinfo Files: 8f09c5402f272067e65553e8def8a5fe 3034 net optional bind9_9.20.0-1.dsc 2c8d94d1524cbbae4d76cd74955bb6d9 5760416 net optional bind9_9.20.0.orig.tar.xz 6592dc976d83edd87bc9a2e10f64a544 59436 net optional bind9_9.20.0-1.debian.tar.xz 4dfec33ec885460f5804f9bc90502c7d 15528 net optional bind9_9.20.0-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQKTBAEBCgB9FiEEw2Gx4wKVQ+vGJel9g3Kkd++uWcIFAmaf45FfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEMz NjFCMUUzMDI5NTQzRUJDNjI1RTk3RDgzNzJBNDc3RUZBRTU5QzIACgkQg3Kkd++u WcLjuA/+JIkpMwWD4nvW5G71/SY/ZTM9IHAB6dF0uKne1q8FzmjBl8NFvLyRmD// icPez1MD/jAy35+qKnG6zAEPoSazb8/WmPvsXixtsid+ostxQKWrS3uT9LzHcq77 TDBmZK2L+rhhktnOadLFYi25JLOaQr5nZmT1TyZAQFtEKPqbGeAM9BALs17BrCs6 +I3NhSoyFIUp7kPTJ4Uh9DrW+vVT8gKFKfxKbUooZyXkMiizFZFNmn5GYyJ0DEAv DaxaVCwv5guOpqWdVu9tiWAKbZaSOLEtdG1mBIYcYST3QU86lZIePuLWUeVRkRIs 3YvUFcs6Iw7m7oNB+ZxB2EmGF518IAU/esEuVyPPW/RGKnkbAMpbsdXJK6RF77vM +JLuNDWP/LJxQjri1o0+Vum2HsYbxd0Fc1ZDtpryJfOHAzkiRX2BTn0OLdsgP4Fz 6bKz1LvH/aWKf0Y9zkaik5E2USPwXVzxOzB92QIyIj0hufdqyumG/BqUcbNkZdsC OreEALX/Tfn/fKaASvTYrbJ2/0R9LXPsX9KQLLVX5UhRScbQmbAzsrATeFWKGGhx 7iwvZ+Vucg44Go5soPpqqicg5r8hnJjYyWQO2pJFVJiERuGMUXHFlMQXoCjbgFwg tbBS/p1xKIE7Aj0+t1CgqKD4xcsXJCQc6VCIyLU/1gpuWQRqbwU= =0f5L -----END PGP SIGNATURE-----