[rock-user] [Security Announcement] bind (RLSA-20060906-02)

"Daniel Jahre" <[email protected]> Wed, 6 Sep 2006 12:30:59 +0200
Newsgroups gmane.linux.distributions.rock.user
Message-ID <[email protected]>
This is a ROCK Linux Security Announcement.

Package: bind
Announcement ID: RLSA-20060906-02
Date: 2006-09-06
Affected Distributions: Crystal
Affected Releases: ROCK 3
Cross References:  CVE-2006-4095, CVE-2006-4096
Fixed at trunk revision: 7884
Content of this advisory:
1) Problem Description
2) Solution or Work-Around
3) Special instructions and notes
4) Updateing your source tree
5) Source package update
6) Binary package update

--------------------------------------------------------------------------------

1) Problem Description
There is a critical remote exploit in bind versions prior 9.3.2. For
more information please look at
http://www.isc.org/index.pl?/sw/bind/bind-security.php


2) Solution or Workaround
There is no known workaround. Please update the package.

3) Special instruction and notes
Please restart the daemon after the update.

4) Updateing your source tree
If you are using a subversion checkout of trunk, run:
 svn up

If you are using submaster run,
 sm sync
to merge the update from trunk into your tree

5) Source package update
As a user of an affected distribution you can update this package by
rebuilding it on your machine
run
 rocket updsrc
to update your local sources and
 rocket emerge bind
to install the updated package

6) Binary package update
Binary packages will be available soon for ROCK 3 at

http://gems.rocklinux.org/repo/ROCK3/TRUNK-x86-pentium-mmx-32-crystal/pkgs

Follow the instructions at
https://www.rocklinux.net/wiki/ROCK3#Upgrading_from_ROCK3_Crystal_RCs
to update the binary package.