[Oraclevm-errata] OVMSA-2017-0100 Important: Oracle VM 3.4 bind security update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Tue May 9 09:07:26 PDT 2017


Oracle VM Security Advisory OVMSA-2017-0100

The following updated rpms for Oracle VM 3.4 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
bind-libs-9.8.2-0.62.rc1.el6_9.2.x86_64.rpm
bind-utils-9.8.2-0.62.rc1.el6_9.2.x86_64.rpm


SRPMS:
http://oss.oracle.com/oraclevm/server/3.4/SRPMS-updates/bind-9.8.2-0.62.rc1.el6_9.2.src.rpm



Description of changes:

[32:9.8.2-0.62.rc1.2]
- Fix DNSKEY that encountered a CNAME (#1447869, ISC change 3391)

[32:9.8.2-0.62.rc1.1]
- Fix CVE-2017-3136 (ISC change 4575)
- Fix CVE-2017-3137 (ISC change 4578)

[32:9.8.2-0.62.rc1]
- Fix and test caching CNAME before DNAME (ISC change 4558)

[32:9.8.2-0.61.rc1]
- Fix CVE-2016-9147 (ISC change 4510)
- Fix regression introduced by CVE-2016-8864 (ISC change 4530)

[32:9.8.2-0.60.rc1]
- Restore SELinux contexts before named restart

[32:9.8.2-0.59.rc1]
- Use /lib or /lib64 only if directory in chroot already exists
- Tighten NSS library pattern, escape chroot mount path

[32:9.8.2-0.58.rc1]
- Fix CVE-2016-8864

[32:9.8.2-0.57.rc1]
- Do not change lib permissions in chroot (#1321239)
- Support WKS records in chroot (#1297562)

[32:9.8.2-0.56.rc1]
- Do not include patch backup in docs (fixes #1325081 patch)

[32:9.8.2-0.55.rc1]
- Backported relevant parts of [RT #39567] (#1259923)

[32:9.8.2-0.54.rc1]
- Increase ISC_SOCKET_MAXEVENTS to 2048 (#1326283)

[32:9.8.2-0.53.rc1]
- Fix multiple realms in nsupdate script like upstream (#1313286)

[32:9.8.2-0.52.rc1]
- Fix multiple realm in nsupdate script (#1313286)

[32:9.8.2-0.51.rc1]
- Use resolver-query-timeout high enough to recover all forwarders 
(#1325081)



More information about the Oraclevm-errata mailing list