[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Bind security announce





Well I waited to see if someone came our with a solution to this problem, none seen. So I'm updating another machine, here is what "dselect" is showing me:


 *** Req admin    base-files   5lenny7     5lenny8     Debian base system miscellaneous files
 *** Req admin    dpkg         1.14.29+b1  1.14.30     Debian package management system
    ....... Updated Required packages in section libs .......
 *** Req libs     libc6        2.7-18lenny 2.7-18lenny GNU C Library: Shared libraries
 *** Req libs     tzdata       2010j-0lenn 2010o-0lenn time zone and daylight-saving time data
    ..... Updated Important packages .....
    ....... Updated Important packages in section libs .......
 *** Imp libs     libssl0.9.8  0.9.8g-15+l 0.9.8g-15+l SSL shared libraries
    ..... Updated Standard packages .....
    ....... Updated Standard packages in section libs .......
 *** Std libs     libbind9-50  1:9.6.ESV.R 1:9.6.ESV.R BIND9 Shared Library used by BIND
 *** Std libs     libisccc50   1:9.6.ESV.R 1:9.6.ESV.R Command Channel Library used by BIND
 *** Std libs     libisccfg50  1:9.6.ESV.R 1:9.6.ESV.R Config File Handling Library used by BIND
 *** Std libs     libkrb53     1.6.dfsg.4~ 1.6.dfsg.4~ MIT Kerberos runtime libraries
 *** Std libs     liblwres50   1:9.6.ESV.R 1:9.6.ESV.R Lightweight Resolver Library used by BIND
 *** Std libs     libxml2      2.6.32.dfsg 2.6.32.dfsg GNOME XML library
 *** Std libs     locales      2.7-18lenny 2.7-18lenny GNU C Library: National Language (locale) data [support]
    ....... Updated Standard packages in section net .......
 *** Std net      bind9-host   1:9.6.ESV.R 1:9.6.ESV.R Version of 'host' bundled with BIND 9.X
 *** Std net      dnsutils     1:9.6.ESV.R 1:9.6.ESV.R Clients provided with BIND

    ..... Updated Optional packages .....
    ....... Updated Optional packages in section admin .......
 *** Opt admin    dselect      1.14.29+b1  1.14.30     Debian package management front-end
 *** Opt admin    linux-image- 2.6.26-25le 2.6.26-26le Linux 2.6.26 image on PPro/Celeron/PII/PIII/P4
    ....... Updated Optional packages in section devel .......
 *** Opt devel    linux-libc-d 2.6.26-25le 2.6.26-26le Linux support headers for userspace development
    ....... Updated Optional packages in section doc .......
 *** Opt doc      bind9-doc    1:9.6.ESV.R 1:9.6.ESV.R Documentation for BIND
 *** Opt doc      krb5-doc     1.6.dfsg.4~ 1.6.dfsg.4~ Documentation for MIT Kerberos
 *** Opt doc      postgresql-d 8.3.11-0len 8.3.12-0len documentation for the PostgreSQL database management system
 *** Opt doc      postgresql-d 8.3.11-0len 8.3.12-0len documentation for the PostgreSQL database management system
    ....... Updated Optional packages in section libdevel .......
 *** Opt libdevel libc6-dev    2.7-18lenny 2.7-18lenny GNU C Library: Development Libraries and Header Files
 *** Opt libdevel libc6-dev-am 2.7-18lenny 2.7-18lenny GNU C Library: 64bit Development Libraries for AMD64
 *** Opt libdevel libfreetype6 2.3.7-2+len 2.3.7-2+len FreeType 2 font engine, development files
 *** Opt libdevel libssl-dev   0.9.8g-15+l 0.9.8g-15+l SSL development libraries, header files and documentation
 *** Opt libdevel libxml2-dev  2.6.32.dfsg 2.6.32.dfsg Development files for the GNOME XML library
    ....... Updated Optional packages in section libs .......
 *** Opt libs     libaprutil1  1.2.12+dfsg 1.2.12+dfsg The Apache Portable Runtime Utility Library
 *** Opt libs     libc6-amd64  2.7-18lenny 2.7-18lenny GNU C Library: 64bit Shared libraries for AMD64
 *** Opt libs     libfreetype6 2.3.7-2+len 2.3.7-2+len FreeType 2 font engine, shared library files
 *** Opt libs     libkadm55    1.6.dfsg.4~ 1.6.dfsg.4~ MIT Kerberos administration runtime libraries
 *** Opt libs     libpq5       8.3.11-0len 8.3.12-0len PostgreSQL C client library
    ....... Updated Optional packages in section misc .......
 *** Opt misc     postgresql-c 8.3.11-0len 8.3.12-0len front-end programs for PostgreSQL (supported version)
 *** Opt misc     postgresql-c 8.3.11-0len 8.3.12-0len front-end programs for PostgreSQL 8.3
    ....... Updated Optional packages in section net .......
 *** Opt net      bind9        1:9.6.ESV.R 1:9.6.ESV.R Internet Domain Name Server
 *** Opt net      bind9utils   1:9.6.ESV.R 1:9.6.ESV.R Utilities for BIND
    ....... Updated Optional packages in section utils .......
 *** Opt utils    dpkg-dev     1.14.29     1.14.30     Debian package development tools
 *** Opt utils    openssl      0.9.8g-15+l 0.9.8g-15+l Secure Socket Layer (SSL) binary and related cryptographic tools
    ..... Updated Extra packages .....
    ....... Updated Extra packages in section libdevel .......
 *** Xtr libdevel libkrb5-dev  1.6.dfsg.4~ 1.6.dfsg.4~ Headers and development libraries for MIT Kerberos
    ....... Updated Extra packages in section libs .......
 *** Xtr libs     libc6-i686   2.7-18lenny 2.7-18lenny GNU C Library: Shared libraries [i686 optimized]

OK as you can see it is going to update bind9 and bind9utils along with other libaries needed for bind9. So let's do the update:


Reading package lists... Done
Building dependency tree
Reading state information... Done
The following packages will be REMOVED
  bind9 bind9-host bind9utils dnsutils libbind9-50 libisccfg50
The following packages will be upgraded:
base-files bind9-doc dpkg dpkg-dev dselect krb5-doc libaprutil1 libc6 libc6-amd64 libc6-dev libc6-dev-amd64 libc6-i686 libfreetype6 libfreetype6-dev libkadm55 libkrb5-dev libkrb53 liblwres50 libpq5 libssl-dev libssl0.9.8 libxml2 libxml2-dev linux-image-2.6.26-2-686 linux-libc-dev locales openssl postgresql-client postgresql-client-8.3 postgresql-doc
  postgresql-doc-8.3 tzdata
32 upgraded, 0 newly installed, 6 to remove and 1 not upgraded.
Need to get 62.6MB of archives.
After this operation, 5464kB of additional disk space will be used.
Do you want to continue [Y/n]?

Look at this! it wants to REMOVE "bind9 bind9-host bind9utils dnsutils libbind9-50 libisccfg50".

What is going wrong here?

Thanks,

Ken






On Mon, 13 Dec 2010, Account for Debian group mail wrote:

On Fri, 10 Dec 2010, Florian Weimer wrote:

* Debian security:

Is there any plan to upgrade the bind version in debian to 9.6-ESV-R3
which correct the bugs?

There was a technical issue with the update process, which has been
resolved now.  Updates will be released in due course.


Hello,

I did the security upgraded on one of my DNS servers running bind9 on a Lenny platform and it removed bind9 all together. I had to go in and reinstall bind9. I did this last night.

Ken


--
To UNSUBSCRIBE, email to debian-security-REQUEST@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
Archive: [🔎] Pine.LNX.4.64.1012130825280.16481@mail.pcez.com">http://lists.debian.org/[🔎] Pine.LNX.4.64.1012130825280.16481@mail.pcez.com



Reply to: