oss-sec mailing list archives

PowerDNS Security Advisories 2019-04 and 2019-05


From: Erik Winkels <erik.winkels () open-xchange com>
Date: Fri, 21 Jun 2019 13:19:28 +0200 (CEST)

Good day,

(via: https://blog.powerdns.com/2019/06/21/powerdns-authoritative-server-4-0-8-and-4-1-10-released/  )

We just released PowerDNS Authoritative Server 4.0.8 and 4.1.10.

The 4.0.8 and 4.1.10 (together with 4.1.9) releases fix the following security advisories:

- PowerDNS Security Advisory 2019-04[1] (CVE-2019-10162)
    - thanks to Gert van Dijk for finding and subsequently reporting this issue

- PowerDNS Security Advisory 2019-05[2] (CVE-2019-10163)
    - thanks to George Asenov for finding and subsequently reporting this issue

Please also see the 4.0.8[3] and 4.1.10[4] changelogs for more details.

The 4.0.8 tarball[5] (sig[6]) and 4.1.10 tarball[7] (sig[8]) are available at downloads.powerdns.com and packages for 
CentOS 6 and 7, Debian Jessie and Stretch, Ubuntu Trusty, Xenial and Bionic are available from repo.powerdns.com.

Please send us all feedback and issues you might have via the mailing list[9], or in case of a bug, via GitHub[10].

[ 1] https://doc.powerdns.com/authoritative/security-advisories/powerdns-advisory-2019-04.html
[ 2] https://doc.powerdns.com/authoritative/security-advisories/powerdns-advisory-2019-05.html
[ 3] https://doc.powerdns.com/authoritative/changelog/4.0.html#powerdns-authoritative-server-4-0-8
[ 4] https://doc.powerdns.com/authoritative/changelog/4.1.html#change-4.1.10
[ 5] https://downloads.powerdns.com/releases/pdns-4.0.8.tar.bz2
[ 6] https://downloads.powerdns.com/releases/pdns-4.0.8.tar.bz2.sig
[ 7] https://downloads.powerdns.com/releases/pdns-4.1.10.tar.bz2
[ 8] https://downloads.powerdns.com/releases/pdns-4.1.10.tar.bz2.sig
[ 9] https://mailman.powerdns.com/mailman/listinfo/pdns-users
[10] https://github.com/PowerDNS/pdns/issues/new
--
Erik Winkels
PowerDNS.COM BV -- https://www.powerdns.com

Attachment: signature.asc
Description:


Current thread: