File _patchinfo of Package patchinfo.14040
<patchinfo incident="14040">
<issue tracker="cve" id="2020-8616"/>
<issue tracker="cve" id="2020-8617"/>
<issue tracker="bnc" id="1171740">VUL-0: EMBARGOED: CVE-2020-8616, CVE-2020-8617: bind: two vulnerabilities</issue>
<issue tracker="bnc" id="1161168">bind - cookie-secrets not working</issue>
<packager>jmoellers</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for bind</summary>
<description>This update for bind fixes the following issues:
Security issues fixed:
- CVE-2020-8616: Fixed the insufficient limit on the number of fetches performed when processing referrals (bsc#1171740).
- CVE-2020-8617: Fixed a logic error in code which checks TSIG validity (bsc#1171740).
Non-security issue fixed:
- Fixed an invalid string comparison in the handling of cookie-secrets (bsc#1161168).
</description>
</patchinfo>