MGASA-2018-0093

Source
https://advisories.mageia.org/MGASA-2018-0093.html
Import Source
https://advisories.mageia.org/MGASA-2018-0093.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2018-0093
Related
Published
2018-01-24T22:37:59Z
Modified
2018-01-24T22:08:34Z
Summary
Updated bind packages fix security vulnerability
Details

BIND was improperly sequencing cleanup operations on upstream recursion fetch contexts, leading in some cases to a use-after-free error that can trigger an assertion failure and crash in named (CVE-2017-3145).

References
Credits

Affected packages

Mageia:5 / bind

Package

Name
bind
Purl
pkg:rpm/mageia/bind?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.10.6.P1-1.mga5

Ecosystem specific

{
    "section": "core"
}