Overview

Request 807355 accepted

Security fixes

* fixes an issue where records in the answer section of
a NXDOMAIN response lacking an SOA were not properly validated
(CVE-2020-12244, bsc#1171553)
* fixes an issue where invalid hostname on the server can result in
disclosure of invalid memory (CVE-2020-10030, bsc#1171553)
* fixes an issue in the DNS protocol has been found that allows
malicious parties to use recursive DNS services to attack third
party authoritative name servers (CVE-2020-10995, bsc#1171553)


Anonymous User's avatar

This comment has been deleted


Adam Majer's avatar
author source maintainer

I'll submit current pdns-recursor later to SLE-12-SP3 later as SP1 has too old boost version.


Leap Reviewbot's avatar

home:adamm:branches:OBS_Maintained:pdns-recursor/pdns-recursor.openSUSE_Backports_SLE-12-SP1@b049a8620177a467e4f4b324d2fcf0bf -> openSUSE:Backports:SLE-12-SP1/pdns-recursor

Could not get source info for home:adamm:branches:OBS_Maintained:pdns-recursor/pdns-recursor.openSUSE_Backports_SLE-12-SP1@b049a8620177a467e4f4b324d2fcf0bf

home:adamm:branches:OBS_Maintained:pdns-recursor/pdns-recursor.openSUSE_Backports_SLE-15-SP1_Update@36e7be658387e9074f8e90528d8638b5 -> openSUSE:Backports:SLE-15-SP1:Update/pdns-recursor

Could not get source info for home:adamm:branches:OBS_Maintained:pdns-recursor/pdns-recursor.openSUSE_Backports_SLE-15-SP1_Update@36e7be658387e9074f8e90528d8638b5

home:adamm:branches:OBS_Maintained:pdns-recursor/pdns-recursor.openSUSE_Leap_15.1_Update@0dc6f43414790bfbf1feeffa6ada855a -> openSUSE:Leap:15.1:Update/pdns-recursor

Could not get source info for home:adamm:branches:OBS_Maintained:pdns-recursor/pdns-recursor.openSUSE_Leap_15.1_Update@0dc6f43414790bfbf1feeffa6ada855a

NOTE: if you think the automated review was wrong here, please talk to the release team before reopening the request

Request History
Adam Majer's avatar

adamm created request

Security fixes

* fixes an issue where records in the answer section of
a NXDOMAIN response lacking an SOA were not properly validated
(CVE-2020-12244, bsc#1171553)
* fixes an issue where invalid hostname on the server can result in
disclosure of invalid memory (CVE-2020-10030, bsc#1171553)
* fixes an issue in the DNS protocol has been found that allows
malicious parties to use recursive DNS services to attack third
party authoritative name servers (CVE-2020-10995, bsc#1171553)


Factory Auto's avatar

factory-auto accepted review

openSUSE:Backports:SLE-12-SP1/pdns-recursor.openSUSE_Backports_SLE-12-SP1::maintenance_incident: Check
script succeeded
openSUSE:Backports:SLE-15-SP1:Update/pdns-recursor.openSUSE_Backports_SLE-15-SP1_Update::maintenance_incident: Check
script succeeded
openSUSE:Leap:15.1:Update/pdns-recursor.openSUSE_Leap_15.1_Update::maintenance_incident: Check
script succeeded


Saul Goodman's avatar

licensedigger accepted review

ok


Maintenance Bot's avatar

maintbot added factory-source as a reviewer

openSUSE:Leap:15.1:Update/pdns-recursor.openSUSE_Leap_15.1_Update::maintenance_incident: null


Maintenance Bot's avatar

maintbot accepted review

openSUSE:Backports:SLE-12-SP1/pdns-recursor.openSUSE_Backports_SLE-12-SP1::maintenance_incident: ok
openSUSE:Backports:SLE-15-SP1:Update/pdns-recursor.openSUSE_Backports_SLE-15-SP1_Update::maintenance_incident: ok
openSUSE:Leap:15.1:Update/pdns-recursor.openSUSE_Leap_15.1_Update::maintenance_incident: ok


Source in Factory Checker's avatar

factory-source added backports-reviewers as a reviewer

openSUSE:Leap:15.1:Update/pdns-recursor.openSUSE_Leap_15.1_Update::maintenance_incident: Automated
review failed. Needs fallback reviewer.


Source in Factory Checker's avatar

factory-source accepted review

openSUSE:Backports:SLE-12-SP1/pdns-recursor.openSUSE_Backports_SLE-12-SP1::maintenance_incident: the
package needs to be accepted in openSUSE:Factory or openSUSE:Factory or openSUSE:Factory
or openSUSE:Factory first
openSUSE:Backports:SLE-15-SP1:Update/pdns-recursor.openSUSE_Backports_SLE-15-SP1_Update::maintenance_incident: the
package needs to be accepted in openSUSE:Factory or openSUSE:Factory or openSUSE:Factory
or openSUSE:Factory first
openSUSE:Leap:15.1:Update/pdns-recursor.openSUSE_Leap_15.1_Update::maintenance_incident: the
package needs to be accepted in openSUSE:Factory or openSUSE:Factory or openSUSE:Factory
or openSUSE:Factory first


Ismail Dönmez's avatar

namtrac accepted review


Ismail Dönmez's avatar

namtrac approved review


Vítězslav Čížek's avatar

vitezslav_cizek moved maintenance target to openSUSE:Maintenance:12655


Vítězslav Čížek's avatar

vitezslav_cizek accepted request

accepted request 807355:Thanks!

For information about the update, see https://build.opensuse.org/project/maintenance_incidents/openSUSE:Maintenance

openSUSE Build Service is sponsored by