BIND Security Advisory (CVE-2009-0025; Severity: Low)

2009-01-07 Thread Rob_Austein
Internet Systems Consortium Security Advisory. BIND: EVP_VerifyFinal() and DSA_do_verify() return checks. 7 January 2009 Versions affected: BIND 9.0 (all versions) BIND 9.1 (all versions) BIND 9.2 (all versions)

BIND 9.3.6-P1 is now available

2009-01-07 Thread Rob_Austein
BIND 9.3.6-P1 is now available. BIND 9.3.6-P1 is a SECURITY patch for BIND 9.3.6. It addresses a bug in which return values from some OpenSSL functions were left unchecked, making it theoretically possible to spoof answers from some signed zones. Bugs should be reported t

BIND 9.4.3-P1 is now available

2009-01-07 Thread Rob_Austein
BIND 9.4.3-P1 is now available. BIND 9.4.3-P1 is a SECURITY patch for BIND 9.4.3. It addresses a bug in which return values from some OpenSSL functions were left unchecked, making it theoretically possible to spoof answers from some signed zones. Bugs should be reported t

BIND 9.5.1-P1 is now available

2009-01-07 Thread Rob_Austein
BIND 9.5.1-P1 is now available. BIND 9.5.1-P1 is a SECURITY patch for BIND 9.5.1. It addresses a bug in which return values from some OpenSSL functions were left unchecked, making it theoretically possible to spoof answers from some signed zones. Bugs should be reported t

BIND 9.6.0-P1 is now available

2009-01-07 Thread Rob_Austein
BIND 9.6.0-P1 is now available. BIND 9.6.0-P1 is a SECURITY patch for BIND 9.6.0. It addresses a bug in which return values from some OpenSSL functions were left unchecked, making it theoretically possible to spoof answers from some signed zones. Bugs should be reported