File _patchinfo of Package patchinfo.12052
<patchinfo incident="12052">
<issue tracker="bnc" id="1125306">c-ares: backport rfc7686 support regarding .onion domains</issue>
<issue tracker="bnc" id="1159006">VUL-0: envoy security issues</issue>
<issue tracker="bnc" id="1125306">c-ares: backport rfc7686 support regarding .onion domains</issue>
<packager>adamm</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for c-ares</summary>
<description>This update for c-ares fixes the following issues:
c-ares version update to 1.15.0:
* Add ares_init_options() configurability for path to resolv.conf file
* Ability to exclude building of tools (adig, ahost, acountry) in CMake
* Report ARES_ENOTFOUND for .onion domain names as per RFC7686
(bsc#1125306)
* Apply the IPv6 server blacklist to all nameserver sources
* Prevent changing name servers while queries are outstanding
* ares_set_servers_csv() on failure should not leave channel in a
bad state
* getaddrinfo - avoid infinite loop in case of NXDOMAIN
* ares_getenv - return NULL in all cases
* implement ares_getaddrinfo
- Fixed a regression in DNS results that contain both A and AAAA answers.
- Add netcfg as the build requirement and runtime requirement.
This update was imported from the SUSE:SLE-15:Update update project.</description>
</patchinfo>