-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 02 Sep 2016 21:43:01 +0200 Source: pdns Binary: pdns-server pdns-server-dbg pdns-backend-pipe pdns-backend-ldap pdns-backend-geo pdns-backend-mysql pdns-backend-pgsql pdns-backend-sqlite3 pdns-backend-lua pdns-backend-lmdb pdns-backend-remote pdns-backend-mydns Architecture: source Version: 3.4.1-4+deb8u6 Distribution: jessie-security Urgency: high Maintainer: Debian PowerDNS Maintainers <pkg-pdns-maintainers@lists.alioth.debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Closes: 830808 Description: pdns-backend-geo - geo backend for PowerDNS pdns-backend-ldap - LDAP backend for PowerDNS pdns-backend-lmdb - lmdb backend for PowerDNS pdns-backend-lua - Lua backend for PowerDNS pdns-backend-mydns - MyDNS compatibility backend for PowerDNS pdns-backend-mysql - generic MySQL backend for PowerDNS pdns-backend-pgsql - generic PostgreSQL backend for PowerDNS pdns-backend-pipe - pipe/coprocess backend for PowerDNS pdns-backend-remote - remote backend for PowerDNS pdns-backend-sqlite3 - sqlite 3 backend for PowerDNS pdns-server - extremely powerful and versatile nameserver pdns-server-dbg - debugging symbols for PowerDNS Changes: pdns (3.4.1-4+deb8u6) jessie-security; urgency=high . * Non-maintainer upload by the Security Team. * Reject qname's wirelength > 255, `chopOff()` handle dot inside labels. CVE-2016-5426: PowerDNS Authoritative Server accepts queries with a qname's length larger than 255 bytes. CVE-2016-5427: PowerDNS Authoritative Server does not properly handle dot inside labels. * Limit size of receivable AXFR data. CVE-2016-6172: Improper restriction of zone size limit (Closes: #830808) Checksums-Sha1: aa7ffad701c87f0613aa9817a8215099d763a3e9 3153 pdns_3.4.1-4+deb8u6.dsc 1316e2d970a88c23f2f9f24cad150d3bb76217ac 43480 pdns_3.4.1-4+deb8u6.debian.tar.xz Checksums-Sha256: 880d0db914e0347a2c20c98fa56b27a6476f0bdaff190d2d52bdaff5bd14621c 3153 pdns_3.4.1-4+deb8u6.dsc 73427c623378f08a52db194360a0d810728cd4f74f098a918bc8fd316c004389 43480 pdns_3.4.1-4+deb8u6.debian.tar.xz Files: 45eb4b69d3b0c2b3a30536d91fdffd73 3153 net extra pdns_3.4.1-4+deb8u6.dsc 2347b5aee88c02c6db6212c8f7b689a3 43480 net extra pdns_3.4.1-4+deb8u6.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQIvBAEBCgAZBQJX0FxKEhxjYXJuaWxAZGViaWFuLm9yZwAKCRAFTLjzE0PPRKJI D/9OKIKNr5YH3HXxdfxzkMBP9h7mRaODeUfnxtJYHFNu2l0SFhI/MUIboURq2853 sWjrwRvBa+aAv1QCXBVw737bjfbGENbb1xdW2bKKHBlfejarOp6KSfCrE1O3BK9j IG22npGN6VfdkOzvNnJUAmnhh7r4Fx6BCD4lRxljuiz+xhNL1W3EZ5yXQ9r7+I8t OXeNkv1UG3FzwOwAyV6xMHwZQHtpBxwJaxeqCPM6s8c3BjF16HQW4I7fuT1sNwyD TBmzJ7YLx/UVOYhatYuAeZ4qGTTvYXJjDMn5hiF75Ls9/cVaqyFIa7QGkgBPM6mn HS9bX+F/1j/EeWStGawrPrZ+wlVV0vUPBk3KM2p9+fnCT5DilKU3XkYOhl62KhvI 3wuXDj3PI6wPrbJ7My7wzdWAnceJ8Xv1jz9UnuYXXABEZADq+vdUwC+iRxMLASzD XLxYNOMYBBk9tfA2dG638wupfaTSTnkLG0f0LIOeCPKO2kFLUchaTd9wyxP3bhmP BwWsxvnAHuiXLehc55Y7SorbD1mzC5cjvaoLEXqgu/7+2H+QRWwdKrFbWny120Hy 1ViaLXZSI36yPhTnY2XUynpUbiCwMwFfVY/1L2HpBrf2BU2jikp0HaVGeQPJQALr PyGOQT0ZKbUalpZYkGlPGqf/93gMX/5H9KlD2bLIYH23zw== =AUbn -----END PGP SIGNATURE-----