unbound 1.19.2-1ubuntu3.2 source package in Ubuntu

Changelog

unbound (1.19.2-1ubuntu3.2) noble-security; urgency=medium

  * SECURITY UPDATE: null pointer dereference
    - debian/patches/CVE-2024-43167-1.patch: fix null pointer
      dereference issue in function ub_ctx_set_fwd of file
      libunbound/libunbound.c
    - debian/patches/CVE-2024-43167-2.patch: fix to print a parse
      error when config is read with no name for a forward-zone, stub-
      zone or view.
    - CVE-2024-43167
  * SECURITY UPDATE: heap buffer overflow
    - debian/patches/CVE-2024-43168-1.patch: fix heap-buffer-overflow
      issue in function cfg_mark_ports of file util/config_file.c
    - debian/patches/CVE-2024-43168-2.patch: adjust error text and
      disallow negative ports in other parts of cfg_mark_ports.
    - CVE-2024-43168

 -- Bruce Cable <email address hidden>  Thu, 05 Sep 2024 17:51:24 +1000

Upload details

Uploaded by:
Bruce Cable
Uploaded to:
Noble
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
net
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Noble updates main net
Noble security main net

Downloads

File Size SHA-256 Checksum
unbound_1.19.2.orig.tar.gz 6.0 MiB cc560d345734226c1b39e71a769797e7fdde2265cbb77ebce542704bba489e55
unbound_1.19.2-1ubuntu3.2.debian.tar.xz 38.0 KiB 30c4a97e466d6e8b0383e23c80c8c992dfd035924e5413abeef8907339de4ebf
unbound_1.19.2-1ubuntu3.2.dsc 2.8 KiB c2ad96e5f34e8013b8ff182c4dde7aa53f0877f81b0a903ddf2395ed03d3f20d

View changes file

Binary packages built by this source

libunbound-dev: static library, header files, and docs for libunbound

 Static library, header files, and documentation for libunbound.
 .
 libunbound performs and validates DNS lookups; it can be used to convert
 hostnames to IP addresses and back and obtain other information from the
 DNS. Cryptographic validation of results is performed with DNSSEC.

libunbound8: library implementing DNS resolution and validation

 libunbound performs and validates DNS lookups; it can be used to convert
 hostnames to IP addresses and back and obtain other information from the
 DNS. Cryptographic validation of results is performed with DNSSEC.

libunbound8-dbgsym: debug symbols for libunbound8
python3-unbound: library implementing DNS resolution and validation (Python3 bindings)

 Python3 extension module for libunbound.
 .
 libunbound performs and validates DNS lookups; it can be used to convert
 hostnames to IP addresses and back and obtain other information from the
 DNS. Cryptographic validation of results is performed with DNSSEC.

python3-unbound-dbgsym: debug symbols for python3-unbound
unbound: validating, recursive, caching DNS resolver

 Unbound is a recursive-only caching DNS server which can perform DNSSEC
 validation of results. It implements only a minimal amount of authoritative
 service to prevent leakage to the root nameservers: forward lookups for
 localhost, reverse for 127.0.0.1 and ::1, and NXDOMAIN for zones served by
 AS112. Stub and forward zones are supported.
 .
 This package contains the unbound daemon.

unbound-anchor: utility to securely fetch the root DNS trust anchor

 unbound-anchor is a utility which securely fetches or updates the root DNS
 zone trust anchor. A copy of the current root anchor and root update
 certificate is embedded in unbound-anchor. RFC 5011 trust anchor tracking is
 performed, with fallback to an SSL fetch if this fails.

unbound-anchor-dbgsym: debug symbols for unbound-anchor
unbound-dbgsym: debug symbols for unbound
unbound-host: reimplementation of the 'host' command

 This package provides the 'unbound-host' program that is bundled with the
 Unbound domain name server. This version differs from the one provided in the
 package called host, which is from NIKHEF, and bind9-host, which is from ISC,
 and has a similar but different set of features and options.

unbound-host-dbgsym: debug symbols for unbound-host