stable

bind-9.18.33-1.fc41 and bind-dyndb-ldap-11.10-33.fc41

FEDORA-2025-3551f3ba1b created by pemensik 5 months ago for Fedora 41

Update to 9.16.33 (#2342784)

Security Fixes:

  • DNS-over-HTTPS flooding fixes. (CVE-2024-12705)
  • Limit additional section processing for large RDATA sets. (CVE-2024-11187)

New Features:

  • Add a new option to configure the maximum number of outgoing queries per client request.

Bug Fixes:

  • Fix nsupdate hang when processing a large update.
  • Fix possible assertion failure when reloading server while processing update policy rules. [GL #5006]
  • Fix dnssec-signzone signing non-DNSKEY RRsets with revoked keys.
  • Fix improper handling of unknown directives in resolv.conf.

Upstream Release Notes

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2025-3551f3ba1b

This update's test gating status has been changed to 'waiting'.

5 months ago

pemensik edited this update.

5 months ago

This update has been submitted for testing by bodhi.

5 months ago

This update's test gating status has been changed to 'passed'.

5 months ago

This update has been pushed to testing.

5 months ago
User Icon bojan provided feedback 5 months ago
karma
User Icon filiperosset commented & provided feedback 5 months ago
karma

no regressions noted

This update can be pushed to stable now if the maintainer wishes

5 months ago
User Icon besser82 commented & provided feedback 5 months ago
karma

Works great! LGTM! =)

This update has been submitted for stable by bodhi.

5 months ago

This update has been pushed to stable.

5 months ago

Please log in to add feedback.

Metadata
Type
security
Severity
high
Karma
3
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
14 days
Dates
submitted
5 months ago
in testing
5 months ago
in stable
5 months ago
modified
5 months ago
approved
5 months ago
BZ#2319214 bind-9.18.31 is available
0
0
BZ#2331675 bind-9.18.32 is available
0
0
BZ#2342784 bind-9.18.33 is available
0
0
BZ#2342883 CVE-2024-12705 bind: DNS-over-HTTPS implementation suffers from multiple issues under heavy query load [fedora-41]
0
0
BZ#2342891 CVE-2024-11187 bind: Many records in the additional section cause CPU exhaustion [fedora-41]
0
0

Automated Test Results

Test Cases

0 0 Test Case bind