Subject: CVS commit: [pkgsrc-2006Q4] pkgsrc/net/bind9
To: None <pkgsrc-changes@NetBSD.org>
From: Geert Hendrickx <ghen@netbsd.org>
List: pkgsrc-changes
Date: 02/01/2007 09:28:53
Module Name: pkgsrc
Committed By: ghen
Date: Thu Feb 1 09:28:53 UTC 2007
Modified Files:
pkgsrc/net/bind9 [pkgsrc-2006Q4]: Makefile distinfo
pkgsrc/net/bind9/patches [pkgsrc-2006Q4]: patch-ao
Log Message:
Pullup ticket 2010 - requested by adrianp
security update for bind9
- pkgsrc/net/bind9/Makefile 1.85-1.86
- pkgsrc/net/bind9/distinfo 1.30
- pkgsrc/net/bind9/patches/patch-ao 1.2
- pkgsrc/net/bind9/patches/patch-ap removed
- pkgsrc/net/bind9/patches/patch-aq removed
Module Name: pkgsrc
Committed By: adrianp
Date: Sun Jan 28 01:31:52 UTC 2007
Modified Files:
pkgsrc/net/bind9: Makefile distinfo
pkgsrc/net/bind9/patches: patch-ao
Removed Files:
pkgsrc/net/bind9/patches: patch-ap patch-aq
Log Message:
Update to 9.3.4
Lots of changes, see http://www.isc.org/sw/bind/view/?release=9.3.4#RELEASE
for all the details:
In brief:
2126. [security] Serialise validation of type ANY responses.
2124. [security] It was possible to dereference a freed fetch
context.
2089. [security] Raise the minimum safe OpenSSL versions to
OpenSSL 0.9.7l and OpenSSL 0.9.8d. Versions
prior to these have known security flaws which
are (potentially) exploitable in named.
2088. [security] Change the default RSA exponent from 3 to 65537.
2066. [security] Handle SIG queries gracefully.
1941. [bug] ncache_adderesult() should set eresult even if no
rdataset is passed to it.
---
Module Name: pkgsrc
Committed By: tron
Date: Tue Jan 30 15:04:34 UTC 2007
Modified Files:
pkgsrc/net/bind9: Makefile
Log Message:
Fix permission problems:
- "share/doc/bind9" shouldn't be group-writable.
- "share/doc/bind9/arm/Bv9ARM.pdf" shouldn't be executable.
Bump package revision because of these fixes.
To generate a diff of this commit:
cvs rdiff -r1.84 -r1.84.2.1 pkgsrc/net/bind9/Makefile
cvs rdiff -r1.29 -r1.29.4.1 pkgsrc/net/bind9/distinfo
cvs rdiff -r1.1 -r1.1.6.1 pkgsrc/net/bind9/patches/patch-ao
Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.