MGASA-2018-0092

Source
https://advisories.mageia.org/MGASA-2018-0092.html
Import Source
https://advisories.mageia.org/MGASA-2018-0092.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2018-0092
Related
Published
2018-01-24T22:37:59Z
Modified
2018-01-24T22:08:19Z
Summary
Updated bind packages fix security vulnerability
Details

BIND was improperly sequencing cleanup operations on upstream recursion fetch contexts, leading in some cases to a use-after-free error that can trigger an assertion failure and crash in named (CVE-2017-3145).

References
Credits

Affected packages

Mageia:6 / bind

Package

Name
bind
Purl
pkg:rpm/mageia/bind?distro=mageia-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.10.6.P1-1.mga6

Ecosystem specific

{
    "section": "core"
}