-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Security release addresses the security issues described in CVE-2015-3193 (OpenSSL), CVE-2015-8000 and CVE-2015-8461.

Here are the packets for CentOS

Security Fixes

* Named is potentially vulnerable to the OpenSSL vulnerabilty described in CVE-2015-3193.
* Incorrect reference counting could result in an INSIST failure if a socket error occurred while performing a lookup. This flaw is disclosed in CVE-2015-8461. [RT#40945]
* Insufficient testing when parsing a message allowed records with an incorrect class to be be accepted, triggering a REQUIRE failure when those records were subsequently cached. This flaw is disclosed in CVE-2015-8000. [RT #40987]

The files are available in the file repository 9.10.3-P2, 9.9.8-P2.

Import GPG Key

rpm --import http://bkraft.fr/files/RPM%20stuff/RPM-GPG-KEY-benjaminkraft

File listing for 9.10.3-P2

http://bkraft.fr/files/RPM%20stuff/bind-9.10.3-2.el6.x86_64
[4.0K]  noarch
[8.0M]  bind-9.10.3-2.el6.src.rpm
[ 71K]  bind-license-9.10.3-2.el6.noarch.rpm
[4.0K]  x86_64
   [2.6M]  bind-9.10.3-2.el6.x86_64.rpm
   [ 70K]  bind-chroot-9.10.3-2.el6.x86_64.rpm
   [4.8M]  bind-debuginfo-9.10.3-2.el6.x86_64.rpm
   [439K]  bind-devel-9.10.3-2.el6.x86_64.rpm
   [1.1M]  bind-libs-9.10.3-2.el6.x86_64.rpm
   [ 69K]  bind-lite-devel-9.10.3-2.el6.x86_64.rpm
   [ 86K]  bind-pkcs11-9.10.3-2.el6.x86_64.rpm
   [337K]  bind-sdb-9.10.3-2.el6.x86_64.rpm
   [211K]  bind-utils-9.10.3-2.el6.x86_64.rpm

Download everything

for i in noarch/bind-license-9.10.3-2.el6.noarch.rpm x86_64/bind-9.10.3-2.el6.x86_64.rpm x86_64/bind-chroot-9.10.3-2.el6.x86_64.rpm x86_64/bind-debuginfo-9.10.3-2.el6.x86_64.rpm x86_64/bind-devel-9.10.3-2.el6.x86_64.rpm x86_64/bind-libs-9.10.3-2.el6.x86_64.rpm x86_64/bind-libs-lite-9.10.3-2.el6.x86_64.rpm x86_64/bind-lite-devel-9.10.3-2.el6.x86_64.rpm x86_64/bind-pkcs11-9.10.3-2.el6.x86_64.rpm x86_64/bind-sdb-9.10.3-2.el6.x86_64.rpm x86_64/bind-utils-9.10.3-2.el6.x86_64.rpm;
do
	wget http://bkraft.fr/files/RPM%20stuff/bind-9.10.3-P2.el6.x86_64/$i
done

File listing for 9.9.8-P2

http://bkraft.fr/files/RPM%20stuff/bind-9.9.8-2.el6.x86_64
[4.0K]  noarch
[8.0M]  bind-9.9.8-2.el6.src.rpm
[ 71K]  bind-license-9.9.8-2.el6.noarch.rpm
[4.0K]  x86_64
   [2.6M]  bind-9.9.8-2.el6.x86_64.rpm
   [ 70K]  bind-chroot-9.9.8-2.el6.x86_64.rpm
   [4.8M]  bind-debuginfo-9.9.8-2.el6.x86_64.rpm
   [439K]  bind-devel-9.9.8-2.el6.x86_64.rpm
   [1.1M]  bind-libs-9.9.8-2.el6.x86_64.rpm
   [ 69K]  bind-lite-devel-9.9.8-2.el6.x86_64.rpm
   [ 86K]  bind-pkcs11-9.9.8-2.el6.x86_64.rpm
   [337K]  bind-sdb-9.9.8-2.el6.x86_64.rpm
   [211K]  bind-utils-9.9.8-2.el6.x86_64.rpm

Download everything

for i in noarch/bind-license-9.9.8-2.el6.noarch.rpm x86_64/bind-9.9.8-2.el6.x86_64.rpm x86_64/bind-chroot-9.9.8-2.el6.x86_64.rpm x86_64/bind-debuginfo-9.9.8-2.el6.x86_64.rpm x86_64/bind-devel-9.9.8-2.el6.x86_64.rpm x86_64/bind-libs-9.9.8-2.el6.x86_64.rpm x86_64/bind-libs-lite-9.9.8-2.el6.x86_64.rpm x86_64/bind-lite-devel-9.9.8-2.el6.x86_64.rpm x86_64/bind-pkcs11-9.9.8-2.el6.x86_64.rpm x86_64/bind-sdb-9.9.8-2.el6.x86_64.rpm x86_64/bind-utils-9.9.8-2.el6.x86_64.rpm;
do
	wget http://bkraft.fr/files/RPM%20stuff/bind-9.9.8-P2.el6.x86_64/$i
done

-----BEGIN PGP SIGNATURE-----
Comment: GPGTools - http://gpgtools.org
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=u1LQ
-----END PGP SIGNATURE-----

Hint: To validate signature, please view page source and copy html code between BEGIN PGP Signed message and END PGP Signature anchors.

Created the 2015-12-16

Share this


Replacement notice

×

This package has been replaced by a new version of the software.

refer to Bind 9.10.3-P3, Bind 9.9.8-P3 for CentOS 6

Resources

10 last articles

blog comments powered by Disqus