-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Freshly built because of CVE-2012-1667 !

For those searching bind 9.9.1-P1 and 9.8.3-P1 for CentOS, here it is.

The first of June, the ISC team released , which is a security update due to a critical problem (taken from the CVE):

Description: This problem was uncovered while testing with experimental DNS record types. It is possible to add records to BIND with null (zero length) rdata fields. Processing of these records may lead to unexpected outcomes. Recursive servers may crash or disclose some portion of memory to the client. Secondary servers may crash on restart after transferring a zone containing these records. Master servers may corrupt zone data if the zone option “auto-dnssec” is set to “maintain”. Other unexpected problems that are not listed here may also be encountered.

Impact: This issue primarily affects recursive nameservers. Authoritative nameservers will only be impacted if an administrator configures experimental record types with no data. If the server is configured this way, then secondaries can crash on restart after transferring that zone. Zone data on the master can become corrupted if the zone with those records has named configured to manage the DNSSEC key rotation

The files are available in the file repository 9.9.1-P1, 9.8.3-P1.

Import GPG Key

rpm --import http://bkraft.fr/files/RPM%20stuff/RPM-GPG-KEY-benjaminkraft

File listing for 9.9.1-P1

http://bkraft.fr/files/RPM%20stuff/bind-9.9.1-P1.el6.x86_64/
|-- [ 512]  noarch
|   |-- [7.0M]  bind-9.9.1-P1.el6.src.rpm
|   `-- [ 71K]  bind-license-9.9.1-P1.el6.noarch.rpm
 `-- [ 512]  x86_64
    |-- [2.3M]  bind-9.9.1-P1.el6.x86_64.rpm
    |-- [ 70K]  bind-chroot-9.9.1-P1.el6.x86_64.rpm
    |-- [5.1M]  bind-debuginfo-9.9.1-P1.el6.x86_64.rpm
    |-- [374K]  bind-devel-9.9.1-P1.el6.x86_64.rpm
    |-- [893K]  bind-libs-9.9.1-P1.el6.x86_64.rpm
    |-- [632K]  bind-libs-lite-9.9.1-P1.el6.x86_64.rpm
    |-- [290K]  bind-lite-devel-9.9.1-P1.el6.x86_64.rpm
    |-- [ 83K]  bind-pkcs11-9.9.1-P1.el6.x86_64.rpm
    |-- [305K]  bind-sdb-9.9.1-P1.el6.x86_64.rpm
    `-- [182K]  bind-utils-9.9.1-P1.el6.x86_64.rpm

Download everything

for i in noarch/bind-license-9.9.1-P1.el6.noarch.rpm x86_64/bind-9.9.1-P1.el6.x86_64.rpm x86_64/bind-chroot-9.9.1-P1.el6.x86_64.rpm x86_64/bind-debuginfo-9.9.1-P1.el6.x86_64.rpm x86_64/bind-devel-9.9.1-P1.el6.x86_64.rpm x86_64/bind-libs-9.9.1-P1.el6.x86_64.rpm x86_64/bind-libs-lite-9.9.1-P1.el6.x86_64.rpm x86_64/bind-lite-devel-9.9.1-P1.el6.x86_64.rpm x86_64/bind-pkcs11-9.9.1-P1.el6.x86_64.rpm x86_64/bind-sdb-9.9.1-P1.el6.x86_64.rpm x86_64/bind-utils-9.9.1-P1.el6.x86_64.rpm;
do
	wget http://bkraft.fr/files/RPM%20stuff/bind-9.9.1-P1.el6.x86_64/$i
done

File listing for 9.8.3-P1

http://bkraft.fr/files/RPM%20stuff/bind-9.8.3-P1.el6.x86_64/
|-- [ 512]  noarch
|   |-- [6.9M]  bind-9.8.3-P1.el6.src.rpm
|   `-- [ 71K]  bind-license-9.8.3-P1.el6.noarch.rpm
 `-- [ 512]  x86_64
    |-- [528K]  bind-9.8.3-P1.el6.x86_64.rpm
    |-- [ 70K]  bind-chroot-9.8.3-P1.el6.x86_64.rpm
    |-- [5.0M]  bind-debuginfo-9.8.3-P1.el6.x86_64.rpm
    |-- [370K]  bind-devel-9.8.3-P1.el6.x86_64.rpm
    |-- [870K]  bind-libs-9.8.3-P1.el6.x86_64.rpm
    |-- [627K]  bind-libs-lite-9.8.3-P1.el6.x86_64.rpm
    |-- [288K]  bind-lite-devel-9.8.3-P1.el6.x86_64.rpm
    |-- [ 83K]  bind-pkcs11-9.8.3-P1.el6.x86_64.rpm
    |-- [306K]  bind-sdb-9.8.3-P1.el6.x86_64.rpm
    `-- [181K]  bind-utils-9.8.3-P1.el6.x86_64.rpm

Download everything

for i in noarch/bind-license-9.8.3-P1.el6.noarch.rpm x86_64/bind-9.8.3-P1.el6.x86_64.rpm x86_64/bind-chroot-9.8.3-P1.el6.x86_64.rpm x86_64/bind-debuginfo-9.8.3-P1.el6.x86_64.rpm x86_64/bind-devel-9.8.3-P1.el6.x86_64.rpm x86_64/bind-libs-9.8.3-P1.el6.x86_64.rpm x86_64/bind-libs-lite-9.8.3-P1.el6.x86_64.rpm x86_64/bind-lite-devel-9.8.3-P1.el6.x86_64.rpm x86_64/bind-pkcs11-9.8.3-P1.el6.x86_64.rpm x86_64/bind-sdb-9.8.3-P1.el6.x86_64.rpm x86_64/bind-utils-9.8.3-P1.el6.x86_64.rpm;
do
	wget http://bkraft.fr/files/RPM%20stuff/bind-9.8.3-P1.el6.x86_64/$i
done

-----BEGIN PGP SIGNATURE-----
Comment: GPGTools - http://gpgtools.org

iQIcBAEBCAAGBQJW5eRQAAoJEBeKS2x6xuR7LaIP/i/vblEtX+enx+8skdlP3G/q
2BgPCwTs7CYawtFWMtGVFBIwNZbUf+4NRh+JNYyTBgLPfP6kLjCf1ZV6GTieBJYL
n8fOQUr+LTB6LCviqGEPNVickFuCbvxUzpig4eEzCgaewz10up55MkCKpfZs0gXD
Xmh04gzlNutTIq04iVaBD/syY6b7uVS0vHgzVEeBU2pe9i5dcpxyv7qqp1pIlMpG
8epCA/qE1ShTUjDiI8eUOz3hQjhtwlPY61/+mqRi3m0YsLMWeDfDY7iAlecNH17a
XY9WQ6Itlua20aUNLbeucnxoV12HLp6L7ZFi2W1/8cujCLwKLtjzEODjExDoyiyr
l8UOcsIVyzjSAa89cxgqRN0IAsQqpx5sERqTFRKglV9YseQhALVugsxfgVkQjOvR
f2YtHMDGTHkcjFdEtfDcznZ6iVYEmCkHJLshIq4nfARRW2WzsK71KOvkBBGlkWk6
VqyKmDJBi2EbFds6yJIXDByP3bZO8RPaq0PCOpoYlFxSIG0/ZYMR+NlLMCwrORBJ
FZLHTMvoMzsaYomLKk0b2X6k3Qa0cVke2GaalvLcohPVqfpPRMRDEoQZK64Kjgli
zK0+IRDMUllaMLOHERovyFjaDU0MfBtohliCKrJj+FPj32SM73CJpm/aD63tFxSL
Vr7KiZPTjEr+bYgBw7Qy
=tws9
-----END PGP SIGNATURE-----

Hint: To validate signature, please view page source and copy html code between BEGIN PGP Signed message and END PGP Signature anchors.

Created the 2012-06-04

Share this


Replacement notice

×

This package has been replaced by a new version of the software.

refer to Bind 9.9.1-P2 and 9.8.3-P2 for CentOS 6

Resources

10 last articles

blog comments powered by Disqus