File _patchinfo of Package patchinfo.14040

<patchinfo incident="14040">
  <issue tracker="cve" id="2020-8616"/>
  <issue tracker="cve" id="2020-8617"/>
  <issue tracker="bnc" id="1171740">VUL-0: EMBARGOED: CVE-2020-8616, CVE-2020-8617: bind: two vulnerabilities</issue>
  <issue tracker="bnc" id="1161168">bind - cookie-secrets not working</issue>
  <packager>jmoellers</packager>
  <rating>important</rating>
  <category>security</category>
  <summary>Security update for bind</summary>
  <description>This update for bind fixes the following issues:

Security issues fixed:

- CVE-2020-8616: Fixed the insufficient limit on the number of fetches performed when processing referrals (bsc#1171740).
- CVE-2020-8617: Fixed a logic error in code which checks TSIG validity (bsc#1171740).

Non-security issue fixed:

- Fixed an invalid string comparison in the handling of cookie-secrets (bsc#1161168).
</description>
</patchinfo>
openSUSE Build Service is sponsored by