Summary: | <net-dns/pdns-4.3.1: Leaking uninitialised memory through crafted zone records (CVE-2020-17482) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Sven Wegener <swegener> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | minor | CC: | ajak, jason.b.phillips |
Priority: | Normal | Flags: | nattka:
sanity-check+
|
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://doc.powerdns.com/authoritative/security-advisories/powerdns-advisory-2020-05.html | ||
Whiteboard: | B4 [glsa+ cve] | ||
Package list: |
net-dns/pdns-4.3.1
|
Runtime testing required: | --- |
Description
Sven Wegener
2020-09-22 21:08:29 UTC
Thanks for reporting this. Let us know when in tree. The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=a10a8c9b9cf7396ae282c36a8c87880aa0952336 commit a10a8c9b9cf7396ae282c36a8c87880aa0952336 Author: Sven Wegener <swegener@gentoo.org> AuthorDate: 2020-09-22 21:22:23 +0000 Commit: Sven Wegener <swegener@gentoo.org> CommitDate: 2020-09-22 21:42:03 +0000 net-dns/pdns: Version bump to 4.3.1, security bug #744160 Bug: https://bugs.gentoo.org/744160 Package-Manager: Portage-3.0.4, Repoman-3.0.1 Signed-off-by: Sven Wegener <swegener@gentoo.org> net-dns/pdns/Manifest | 1 + net-dns/pdns/pdns-4.3.1.ebuild | 170 +++++++++++++++++++++++++++++++++++++++++ 2 files changed, 171 insertions(+) Please let us know when ready to stable. 4.3.1 is ready for stabilization (In reply to Sven Wegener from comment #4) > 4.3.1 is ready for stabilization Thanks Sven! The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=c362518144814fec57270cbc2282cc482c6e336d commit c362518144814fec57270cbc2282cc482c6e336d Author: Sven Wegener <swegener@gentoo.org> AuthorDate: 2020-09-30 20:45:42 +0000 Commit: Sven Wegener <swegener@gentoo.org> CommitDate: 2020-09-30 20:45:49 +0000 net-dns/pdns: 4.3.1 stable on amd/x86, security bug #744160 Bug: https://bugs.gentoo.org/744160 Package-Manager: Portage-3.0.4, Repoman-3.0.1 Signed-off-by: Sven Wegener <swegener@gentoo.org> net-dns/pdns/pdns-4.3.1.ebuild | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) Thank you! Please cleanup. The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=6842082c6e057977fed0d94e3d444beb8993205f commit 6842082c6e057977fed0d94e3d444beb8993205f Author: Sven Wegener <swegener@gentoo.org> AuthorDate: 2020-10-03 11:02:48 +0000 Commit: Sven Wegener <swegener@gentoo.org> CommitDate: 2020-10-03 11:03:53 +0000 net-dns/pdns: Cleanup Bug: https://bugs.gentoo.org/744160 Package-Manager: Portage-3.0.4, Repoman-3.0.1 Signed-off-by: Sven Wegener <swegener@gentoo.org> net-dns/pdns/Manifest | 1 - net-dns/pdns/pdns-4.3.0.ebuild | 170 ----------------------------------------- 2 files changed, 171 deletions(-) GLSA Vote: Yes New GLSA request filed. This issue was resolved and addressed in GLSA 202012-18 at https://security.gentoo.org/glsa/202012-18 by GLSA coordinator Thomas Deutschmann (whissi). |