Summary: | <net-dns/bind-9.16.4: Multiple vulnerabilities (CVE-2020-{8618,8619}) | ||||||
---|---|---|---|---|---|---|---|
Product: | Gentoo Security | Reporter: | Sam James <sam> | ||||
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> | ||||
Status: | RESOLVED FIXED | ||||||
Severity: | minor | CC: | idl0r, jasmin+gentoo, ole+gentoo, soprwa, zlogene | ||||
Priority: | Normal | Flags: | nattka:
sanity-check+
|
||||
Version: | unspecified | ||||||
Hardware: | All | ||||||
OS: | Linux | ||||||
URL: | https://lists.isc.org/pipermail/bind-announce/2020-June/001159.html | ||||||
See Also: | https://bugs.gentoo.org/show_bug.cgi?id=723988 | ||||||
Whiteboard: | B3 [noglsa cve] | ||||||
Package list: |
net-dns/bind-9.16.4 amd64 arm arm64 ppc ppc64 sparc x86
net-dns/bind-tools-9.16.4 amd64 arm arm64 hppa ppc ppc64 sparc x86
|
Runtime testing required: | --- | ||||
Bug Depends on: | 730198 | ||||||
Bug Blocks: | |||||||
Attachments: |
|
Description
Sam James
2020-06-17 19:15:34 UTC
@maintainer(s), please bump to 9.16.4, 9.11.20. *** Bug 728972 has been marked as a duplicate of this bug. *** ping Created attachment 646646 [details]
bind-9.16.4.ebuild
If it helps, I just uploaded an updated ebuild file. Bind 9.16.4 moved the man files into doc/man and removed Bv9ARM.pdf. While it can be still built, this requires latex with xelatex which would pull a lot of dependencies. --- bind-9.16.3.ebuild 2020-05-20 05:39:01.000000000 -0700 +++ bind-9.16.4.ebuild 2020-06-26 23:41:43.738828916 -0700 @@ -98,7 +98,7 @@ export LDFLAGS="${LDFLAGS} -L${EPREFIX}/usr/$(get_libdir) -ldl" # Adjusting PATHs in manpages - for i in bin/{named/named.8,check/named-checkconf.8,rndc/rndc.8} ; do + for i in doc/man/{named.8in,named-checkconf.8in,rndc.8in} ; do sed -i \ -e 's:/etc/named.conf:/etc/bind/named.conf:g' \ -e 's:/etc/rndc.conf:/etc/bind/rndc.conf:g' \ @@ -183,7 +183,7 @@ dodoc CHANGES README if use doc; then - dodoc doc/arm/Bv9ARM.pdf + test -f doc/arm/Bv9ARM.pdf && dodoc doc/arm/Bv9ARM.pdf docinto misc dodoc -r doc/misc/ @@ -217,7 +217,7 @@ newenvd "${FILESDIR}"/10bind.env 10bind # Let's get rid of those tools and their manpages since they're provided by bind-tools - rm -f "${ED}"/usr/share/man/man1/{dig,host,nslookup}.1* || die + rm -f "${ED}"/usr/share/man/man1/{dig,host,nslookup,nsupdate,delv}.1* || die rm -f "${ED}"/usr/share/man/man8/nsupdate.8* || die rm -f "${ED}"/usr/bin/{dig,host,nslookup,nsupdate} || die rm -f "${ED}"/usr/sbin/{dig,host,nslookup,nsupdate} || die arm stable arm64 stable ppc stable ppc64 stable x86 stable amd64 stable sparc stable hppa: ping GLSA vote: no. hppa stable Please cleanup. |