[Secure-testing-team] Bug#812077: bind9: CVE-2015-8704: Specific APL data could trigger an INSIST in apl_42.c

Salvatore Bonaccorso carnil at debian.org
Wed Jan 20 09:33:47 UTC 2016


Source: bind9
Version: 1:9.7.3.dfsg-1
Severity: serious
Tags: security upstream fixed-upstream

Hi,

(Marking as RC, since fixes are in stable already and need to go to
stretch as well).

the following vulnerability was published for bind9.

CVE-2015-8704[0]:
Specific APL data could trigger an INSIST in apl_42.c

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2015-8704

Regards,
Salvatore



More information about the Secure-testing-team mailing list