Bug 2216462 - bind-9.18.16 is available
Summary: bind-9.18.16 is available
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Fedora
Classification: Fedora
Component: bind
Version: rawhide
Hardware: Unspecified
OS: Unspecified
unspecified
urgent
Target Milestone: ---
Assignee: Petr Menšík
QA Contact: Fedora Extras Quality Assurance
URL: https://downloads.isc.org/isc/bind9/9...
Whiteboard:
: 2218464 (view as bug list)
Depends On: 2216627 2216630
Blocks:
TreeView+ depends on / blocked
 
Reported: 2023-06-21 13:57 UTC by Upstream Release Monitoring
Modified: 2023-07-01 04:28 UTC (History)
7 users (show)

Fixed In Version: bind-9.18.16-1.fc39 bind-9.18.16-1.fc38 bind-9.18.16-1.fc37
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2023-06-25 00:50:12 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)
Update to 9.18.16 (#2216462) (1.02 KB, patch)
2023-06-21 13:57 UTC, Upstream Release Monitoring
no flags Details | Diff


Links
System ID Private Priority Status Summary Last Updated
Internet Systems Consortium (ISC) isc-projects bind9 issues 3905 0 None closed Remove TKEY Diffie-Hellman authentication 2023-06-21 22:43:57 UTC
Internet Systems Consortium (ISC) isc-projects bind9 issues 3950 0 None closed Unexpected NODATA answers instead of successful response or SERVFAIL with serve-stale answers enabled and serve-stale-cl... 2023-06-21 22:43:57 UTC
Internet Systems Consortium (ISC) isc-projects bind9 issues 3978 0 None closed Support using pytest to execute the system tests 2023-06-21 22:43:57 UTC
Internet Systems Consortium (ISC) isc-projects bind9 issues 4038 0 None None None 2023-06-21 22:43:57 UTC
Internet Systems Consortium (ISC) isc-projects bind9 issues 4071 0 None closed named stops responding if an HTTP/2 listener is disabled whilst running 2023-06-21 22:43:57 UTC
Internet Systems Consortium (ISC) isc-projects bind9 issues 4074 0 None closed Problem with stale-answer-enable true and clients-per-query increased 2023-06-21 22:43:57 UTC

Description Upstream Release Monitoring 2023-06-21 13:57:09 UTC
Releases retrieved: 9.18.16
Upstream release that is considered latest: 9.18.16
Current version/release in rawhide: 9.18.15-1.fc39
URL: https://www.isc.org/bind/

Please consult the package updates policy before you issue an update to a stable branch: https://docs.fedoraproject.org/en-US/fesco/Updates_Policy/


More information about the service that created this bug can be found at: https://docs.fedoraproject.org/en-US/package-maintainers/Upstream_Release_Monitoring


Please keep in mind that with any upstream change, there may also be packaging changes that need to be made. Specifically, please remember that it is your responsibility to review the new version to ensure that the licensing is still correct and that no non-free or legally problematic items have been added upstream.


Based on the information from Anitya: https://release-monitoring.org/project/242117/


To change the monitoring settings for the project, please visit:
https://src.fedoraproject.org/rpms/bind

Comment 1 Upstream Release Monitoring 2023-06-21 13:57:19 UTC
Created attachment 1971891 [details]
Update to 9.18.16 (#2216462)

Comment 2 Upstream Release Monitoring 2023-06-21 14:15:09 UTC
the-new-hotness/release-monitoring.org's scratch build of bind-9.18.16-1.fc38.src.rpm for rawhide completed http://koji.fedoraproject.org/koji/taskinfo?taskID=102421701

Comment 3 Petr Menšík 2023-06-21 22:43:57 UTC
No change seems needed, this brings few bug fixes and vulnerability fixes as well.

Comment 4 Petr Menšík 2023-06-21 22:46:41 UTC
	--- 9.18.16 released ---

6192.	[security]	A query that prioritizes stale data over lookup
			triggers a fetch to refresh the stale data in cache.
			If the fetch is aborted for exceeding the recursion
			quota, it was possible for 'named' to enter an infinite
			callback loop and crash due to stack overflow. This has
			been fixed. (CVE-2023-2911) [GL #4089]

6190.	[security]	Improve the overmem cleaning process to prevent the
			cache going over the configured limit. (CVE-2023-2828)
			[GL #4055]

6188.	[performance]	Reduce memory consumption by allocating properly
			sized send buffers for stream-based transports.
			[GL #4038]

6186.	[bug]		Fix a 'clients-per-query' miscalculation bug. When the
			'stale-answer-enable' options was enabled and the
			'stale-answer-client-timeout' option was enabled and
			larger than 0, named was taking two places from the
			'clients-per-query' limit for each client and was
			failing to gradually auto-tune its value, as configured.
			[GL #4074]

6185.	[func]		Add "ClientQuota" statistics channel counter, which
			indicates the number of the resolver's spilled queries
			due to reaching the clients per query quota. [GL !7978]

6183.	[bug]		Fix a serve-stale bug where a delegation from cache
			could be returned to the client. [GL #3950]

6182.	[cleanup]	Remove configure checks for epoll, kqueue and
			/dev/poll. [GL #4098]

6181.	[func]		The "tkey-dhkey" option has been deprecated; a
			warning will be logged when it is used. In a future
			release, Diffie-Hellman TKEY mode will be removed.
			[GL #3905]

6180.	[bug]		The session key object could be incorrectly added
			to multiple different views' keyrings. [GL #4079]

6179.	[bug]		Fix an interfacemgr use-after-free error in
			zoneconf.c:isself(). [GL #3765]

6176.	[test]		Add support for using pytest & pytest-xdist to
			execute the system test suite. [GL #3978]

6174.	[bug]		BIND could get stuck on reconfiguration when a
			'listen' statement for HTTP is removed from the
			configuration. That has been fixed. [GL #4071]

6173.	[bug]		Properly process extra "nameserver" lines in
			resolv.conf otherwise the next line is not properly
			processed. [GL #4066]

6169.	[bug]		named could crash when deleting inline-signing zones
			with "rndc delzone". [GL #4054]

6165.	[bug]		Fix a logic error in dighost.c which could call the
			dighost_shutdown() callback twice and cause problems
			if the callback function was not idempotent. [GL #4039]

Comment 5 Fedora Update System 2023-06-23 07:49:57 UTC
FEDORA-2023-c0ff5a2f68 has been submitted as an update to Fedora 39. https://bodhi.fedoraproject.org/updates/FEDORA-2023-c0ff5a2f68

Comment 6 Fedora Update System 2023-06-23 07:53:52 UTC
FEDORA-2023-8e1ddb1fa2 has been submitted as an update to Fedora 38. https://bodhi.fedoraproject.org/updates/FEDORA-2023-8e1ddb1fa2

Comment 7 Fedora Update System 2023-06-23 09:01:06 UTC
FEDORA-2023-1d526d551c has been submitted as an update to Fedora 37. https://bodhi.fedoraproject.org/updates/FEDORA-2023-1d526d551c

Comment 8 Fedora Update System 2023-06-23 09:09:06 UTC
FEDORA-2023-c0ff5a2f68 has been pushed to the Fedora 39 stable repository.
If problem still persists, please make note of it in this bug report.

Comment 9 Fedora Update System 2023-06-24 01:08:35 UTC
FEDORA-2023-8e1ddb1fa2 has been pushed to the Fedora 38 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2023-8e1ddb1fa2`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2023-8e1ddb1fa2

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 10 Fedora Update System 2023-06-24 01:56:33 UTC
FEDORA-2023-1d526d551c has been pushed to the Fedora 37 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2023-1d526d551c`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2023-1d526d551c

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 11 Fedora Update System 2023-06-25 00:50:12 UTC
FEDORA-2023-8e1ddb1fa2 has been pushed to the Fedora 38 stable repository.
If problem still persists, please make note of it in this bug report.

Comment 12 Fedora Update System 2023-06-30 01:35:05 UTC
FEDORA-2023-1d526d551c has been pushed to the Fedora 37 stable repository.
If problem still persists, please make note of it in this bug report.

Comment 13 Petr Menšík 2023-07-01 04:28:07 UTC
*** Bug 2218464 has been marked as a duplicate of this bug. ***


Note You need to log in before you can comment on or make changes to this bug.