freebsd-dev/contrib/bind9/lib
Doug Barton 5719469a12 MFC 202961:
Upgrade to BIND 9.6.1-P3.

This version address the following vulnerabilities:

BIND 9 Cache Update from Additional Section
https://www.isc.org/advisories/CVE-2009-4022v6
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4022
A nameserver with DNSSEC validation enabled may incorrectly add
unauthenticated records to its cache that are received during the
resolution of a recursive client query

BIND 9 DNSSEC validation code could cause bogus NXDOMAIN responses
https://www.isc.org/advisories/CVE-2010-0097
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0097
There was an error in the DNSSEC NSEC/NSEC3 validation code that could
cause bogus NXDOMAIN responses (that is, NXDOMAIN responses for records
proven by NSEC or NSEC3 to exist) to be cached as if they had validated
correctly

These issues only affect systems with DNSSEC validation enabled.
2010-02-07 20:28:24 +00:00
..
bind9 Update to the final release version of BIND 9.6.1. It has the following 2009-06-25 19:16:29 +00:00
dns MFC 202961: 2010-02-07 20:28:24 +00:00
isc MFC rev 200202: 2009-12-14 01:10:05 +00:00
isccc Update BIND to version 9.6.1rc1. This version has better performance and 2009-05-31 05:42:58 +00:00
isccfg Update BIND to version 9.6.1rc1. This version has better performance and 2009-05-31 05:42:58 +00:00
lwres MFC 202961: 2010-02-07 20:28:24 +00:00
Makefile.in Update BIND to version 9.6.1rc1. This version has better performance and 2009-05-31 05:42:58 +00:00