[Oraclevm-errata] OVMSA-2017-0100 Important: Oracle VM 3.3 bind security update
Errata Announcements for Oracle VM
oraclevm-errata at oss.oracle.com
Tue May 9 09:07:42 PDT 2017
Oracle VM Security Advisory OVMSA-2017-0100
The following updated rpms for Oracle VM 3.3 have been uploaded to the
Unbreakable Linux Network:
x86_64:
bind-libs-9.8.2-0.62.rc1.el6_9.2.x86_64.rpm
bind-utils-9.8.2-0.62.rc1.el6_9.2.x86_64.rpm
SRPMS:
http://oss.oracle.com/oraclevm/server/3.3/SRPMS-updates/bind-9.8.2-0.62.rc1.el6_9.2.src.rpm
Description of changes:
[32:9.8.2-0.62.rc1.2]
- Fix DNSKEY that encountered a CNAME (#1447869, ISC change 3391)
[32:9.8.2-0.62.rc1.1]
- Fix CVE-2017-3136 (ISC change 4575)
- Fix CVE-2017-3137 (ISC change 4578)
[32:9.8.2-0.62.rc1]
- Fix and test caching CNAME before DNAME (ISC change 4558)
[32:9.8.2-0.61.rc1]
- Fix CVE-2016-9147 (ISC change 4510)
- Fix regression introduced by CVE-2016-8864 (ISC change 4530)
[32:9.8.2-0.60.rc1]
- Restore SELinux contexts before named restart
[32:9.8.2-0.59.rc1]
- Use /lib or /lib64 only if directory in chroot already exists
- Tighten NSS library pattern, escape chroot mount path
[32:9.8.2-0.58.rc1]
- Fix CVE-2016-8864
[32:9.8.2-0.57.rc1]
- Do not change lib permissions in chroot (#1321239)
- Support WKS records in chroot (#1297562)
[32:9.8.2-0.56.rc1]
- Do not include patch backup in docs (fixes #1325081 patch)
[32:9.8.2-0.55.rc1]
- Backported relevant parts of [RT #39567] (#1259923)
[32:9.8.2-0.54.rc1]
- Increase ISC_SOCKET_MAXEVENTS to 2048 (#1326283)
[32:9.8.2-0.53.rc1]
- Fix multiple realms in nsupdate script like upstream (#1313286)
[32:9.8.2-0.52.rc1]
- Fix multiple realm in nsupdate script (#1313286)
[32:9.8.2-0.51.rc1]
- Use resolver-query-timeout high enough to recover all forwarders
(#1325081)
More information about the Oraclevm-errata
mailing list