]> git.ipfire.org Git - thirdparty/bind9.git/commitdiff
regen v9_11
authorTinderbox User <tbox@isc.org>
Wed, 31 May 2017 01:15:21 +0000 (01:15 +0000)
committerTinderbox User <tbox@isc.org>
Wed, 31 May 2017 01:15:21 +0000 (01:15 +0000)
doc/arm/Bv9ARM.ch09.html
doc/arm/notes.html

index c067d40794c950c685eea54b3b880874edb83b2b..da2778428b90e84561d9c04eaf9c72003827a2d0 100644 (file)
   <div class="section">
 <div class="titlepage"><div><div><h3 class="title">
 <a name="relnotes_security"></a>Security Fixes</h3></div></div></div>
-    <div class="itemizedlist"><ul class="itemizedlist" style="list-style-type: disc; "><li class="listitem">
+    <div class="itemizedlist"><ul class="itemizedlist" style="list-style-type: disc; ">
+<li class="listitem">
+       <p>
+         The BIND installer on Windows used an unquoted service path,
+         which can enable privilege escalation. This flaw is disclosed
+         in CVE-2017-3141. [RT #45229]
+       </p>
+      </li>
+<li class="listitem">
        <p>
-         None.
+         With certain RPZ configurations, a response with TTL 0
+         could cause <span class="command"><strong>named</strong></span> to go into an infinite
+         query loop. This flaw is disclosed in CVE-2017-3140.
+         [RT #45181]
        </p>
-      </li></ul></div>
+      </li>
+</ul></div>
   </div>
 
   <div class="section">
index 9d21f405788656751c4f1f40b8895a8ce6cf7041..f0241f0b56533b78259563c3b8700323ba52b7ec 100644 (file)
   <div class="section">
 <div class="titlepage"><div><div><h3 class="title">
 <a name="relnotes_security"></a>Security Fixes</h3></div></div></div>
-    <div class="itemizedlist"><ul class="itemizedlist" style="list-style-type: disc; "><li class="listitem">
+    <div class="itemizedlist"><ul class="itemizedlist" style="list-style-type: disc; ">
+<li class="listitem">
+       <p>
+         The BIND installer on Windows used an unquoted service path,
+         which can enable privilege escalation. This flaw is disclosed
+         in CVE-2017-3141. [RT #45229]
+       </p>
+      </li>
+<li class="listitem">
        <p>
-         None.
+         With certain RPZ configurations, a response with TTL 0
+         could cause <span class="command"><strong>named</strong></span> to go into an infinite
+         query loop. This flaw is disclosed in CVE-2017-3140.
+         [RT #45181]
        </p>
-      </li></ul></div>
+      </li>
+</ul></div>
   </div>
 
   <div class="section">