Subject: CVS commit: [pkgsrc-2006Q2] pkgsrc/net/bind9
To: None <pkgsrc-changes@NetBSD.org>
From: Geert Hendrickx <ghen@netbsd.org>
List: pkgsrc-changes
Date: 09/07/2006 11:20:44
Module Name:	pkgsrc
Committed By:	ghen
Date:		Thu Sep  7 11:20:44 UTC 2006

Modified Files:
	pkgsrc/net/bind9 [pkgsrc-2006Q2]: Makefile PLIST distinfo
	pkgsrc/net/bind9/patches [pkgsrc-2006Q2]: patch-ac patch-ad patch-af
	    patch-ai patch-aj patch-al
Added Files:
	pkgsrc/net/bind9/patches [pkgsrc-2006Q2]: patch-am patch-an patch-ao
	    patch-ap patch-aq
Removed Files:
	pkgsrc/net/bind9/patches [pkgsrc-2006Q2]: patch-aa patch-ae patch-ah

Log Message:
Pullup ticket 1816 - requested by adrianp
security update for bind9

Revisions pulled up:
- pkgsrc/net/bind9/Makefile				1.79,1.81-1.82
- pkgsrc/net/bind9/PLIST				1.19
- pkgsrc/net/bind9/distinfo				1.27
- pkgsrc/net/bind9/patches/patch-aa			removed
- pkgsrc/net/bind9/patches/patch-ac			1.6
- pkgsrc/net/bind9/patches/patch-ad			1.6
- pkgsrc/net/bind9/patches/patch-ae			removed
- pkgsrc/net/bind9/patches/patch-af			1.6
- pkgsrc/net/bind9/patches/patch-ah			removed
- pkgsrc/net/bind9/patches/patch-ai			1.7
- pkgsrc/net/bind9/patches/patch-aj			1.4
- pkgsrc/net/bind9/patches/patch-al			1.2
- pkgsrc/net/bind9/patches/patch-am			1.1
- pkgsrc/net/bind9/patches/patch-ao			1.1
- pkgsrc/net/bind9/patches/patch-ap			1.1
- pkgsrc/net/bind9/patches/patch-aq			1.1

   Module Name:	pkgsrc
   Committed By:	taca
   Date:		Thu Aug 17 14:14:18 UTC 2006

   Modified Files:
	pkgsrc/net/bind9: Makefile PLIST distinfo
	pkgsrc/net/bind9/patches: patch-ac patch-ad patch-af patch-ai patch-aj
	    patch-al
   Added Files:
	pkgsrc/net/bind9/patches: patch-am
   Removed Files:
	pkgsrc/net/bind9/patches: patch-aa patch-ae patch-ah

   Log Message:
   Update bind to 9.3.2.

   Changes are huge, so please see http://www.isc.org/sw/bind/bind9.3.php.
---
   Module Name:	pkgsrc
   Committed By:	seb
   Date:		Mon Aug 28 16:00:45 UTC 2006

   Modified Files:
	pkgsrc/net/bind9: Makefile distinfo
   Added Files:
	pkgsrc/net/bind9/patches: patch-an patch-ao

   Log Message:
   Bump PKGREVISION to 1.

   Fix build on NetBSD/sparc64 3.x: sync CPP symbols usage between
   struct addrinfo definition and its usage in getaddrinfo().

   While here define struct addrinfo's pad members the same way as in
   NetBSD's /usr/include/netbsd.h and sync code in
   lib/bind/irs/getaddrinfo.c:getaddrinfo().

   This had been reported to bind9-bugs at isc dot org.
---
   Module Name:	pkgsrc
   Committed By:	rillig
   Date:		Sun Sep  3 22:58:26 UTC 2006

   Modified Files:
	pkgsrc/net/bind9: Makefile

   Log Message:
   Added the relevant variables to BUILD_DEFS.
---
   Module Name:	pkgsrc
   Committed By:	adrianp
   Date:		Tue Sep  5 20:45:32 UTC 2006

   Modified Files:
	pkgsrc/net/bind9: Makefile distinfo
   Added Files:
	pkgsrc/net/bind9/patches: patch-ap patch-aq

   Log Message:
   Fixes for CVE-2006-4095 and CVE-2006-4096 from bind-9.3.2-P1

   * Assertion failure in ISC BIND SIG query processing (CVE-2006-4095)

   - Recursive servers
   Queries for SIG records will trigger an assertion failure if more
   than one RRset is returned. However exposure can be minimized by
   restricting which sources can ask for recursion.

   - Authoritative servers
   If a nameserver is serving a RFC 2535 DNSSEC zone and is queried
   for the SIG records where there are multiple RRsets, then the
   named program will trigger an assertion failure when it tries
   to construct the response.

   * INSIST failure in ISC BIND recursive query handling code (CVE-2006-4096)

   It is possible to trigger an INSIST failure by sending enough
   recursive queries such that the response to the query arrives after
   all the clients waiting for the response have left the recursion
   queue. However exposure can be minimized by restricting which sources
   can ask for recursion.


To generate a diff of this commit:
cvs rdiff -r1.78 -r1.78.2.1 pkgsrc/net/bind9/Makefile
cvs rdiff -r1.18 -r1.18.2.1 pkgsrc/net/bind9/PLIST
cvs rdiff -r1.26 -r1.26.4.1 pkgsrc/net/bind9/distinfo
cvs rdiff -r1.8 -r0 pkgsrc/net/bind9/patches/patch-aa
cvs rdiff -r1.5 -r1.5.14.1 pkgsrc/net/bind9/patches/patch-ac \
    pkgsrc/net/bind9/patches/patch-af
cvs rdiff -r1.5 -r1.5.4.1 pkgsrc/net/bind9/patches/patch-ad
cvs rdiff -r1.5 -r0 pkgsrc/net/bind9/patches/patch-ae
cvs rdiff -r1.6 -r0 pkgsrc/net/bind9/patches/patch-ah
cvs rdiff -r1.6 -r1.6.12.1 pkgsrc/net/bind9/patches/patch-ai
cvs rdiff -r1.3 -r1.3.14.1 pkgsrc/net/bind9/patches/patch-aj
cvs rdiff -r1.1 -r1.1.14.1 pkgsrc/net/bind9/patches/patch-al
cvs rdiff -r0 -r1.1.2.1 pkgsrc/net/bind9/patches/patch-am \
    pkgsrc/net/bind9/patches/patch-an pkgsrc/net/bind9/patches/patch-ao \
    pkgsrc/net/bind9/patches/patch-ap pkgsrc/net/bind9/patches/patch-aq

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.