-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 13 Feb 2024 21:00:13 +0100 Source: unbound Binary: libunbound-dev libunbound8 libunbound8-dbgsym python3-unbound python3-unbound-dbgsym unbound unbound-anchor unbound-anchor-dbgsym unbound-dbgsym unbound-host unbound-host-dbgsym Architecture: i386 Version: 1.17.1-2+deb12u2 Distribution: bookworm-security Urgency: high Maintainer: i386 Build Daemon (x86-grnet-01) Changed-By: Salvatore Bonaccorso Description: libunbound-dev - static library, header files, and docs for libunbound libunbound8 - library implementing DNS resolution and validation python3-unbound - library implementing DNS resolution and validation (Python3 bindi unbound - validating, recursive, caching DNS resolver unbound-anchor - utility to securely fetch the root DNS trust anchor unbound-host - reimplementation of the 'host' command Closes: 1063845 Changes: unbound (1.17.1-2+deb12u2) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * Address DNSSEC protocol vulnerabilities (Closes: #1063845) - Fix CVE-2023-50387, DNSSEC verification complexity can be exploited to exhaust CPU resources and stall DNS resolvers. - Fix CVE-2023-50868, NSEC3 closest encloser proof can exhaust CPU. Checksums-Sha1: 8418ebbe2aa2fb60970e6b183384574c4126dbfe 682816 libunbound-dev_1.17.1-2+deb12u2_i386.deb c577e283ef9305aefeb7db4feadb7df369441a07 1105380 libunbound8-dbgsym_1.17.1-2+deb12u2_i386.deb e7e02463c4b93de2f343dfb47ec0eb15d4e59f8b 582804 libunbound8_1.17.1-2+deb12u2_i386.deb 15b27babee7b8525347d1c0408a5bbc15edc4cdc 155368 python3-unbound-dbgsym_1.17.1-2+deb12u2_i386.deb 1568f3c5087dda9b6bbb6bdec56a6815006c148a 203900 python3-unbound_1.17.1-2+deb12u2_i386.deb 259fa7b22d20cfeb8dd3e908746785e3551cdf48 58120 unbound-anchor-dbgsym_1.17.1-2+deb12u2_i386.deb 8c15cc9c9d76ff007450dcf870cdb7a171c8f461 182256 unbound-anchor_1.17.1-2+deb12u2_i386.deb 79e5c6ed375faf7d10b5d5d8118c0da74584c6bd 4440600 unbound-dbgsym_1.17.1-2+deb12u2_i386.deb eb721700c6226db235a86827cdb030bc3e61d466 112868 unbound-host-dbgsym_1.17.1-2+deb12u2_i386.deb 172ea26c0158de36cc6d40a83d4c4b2abf18717e 204200 unbound-host_1.17.1-2+deb12u2_i386.deb cf25279741efc945b2459ef881741b4132b853ff 10538 unbound_1.17.1-2+deb12u2_i386-buildd.buildinfo 76f9d70b154a2c9da49900fa7c3a9b13315c994c 994232 unbound_1.17.1-2+deb12u2_i386.deb Checksums-Sha256: 346f207976cf1831c78ead07325b3c4e891187e2f28ad0af544ff0a2758761ed 682816 libunbound-dev_1.17.1-2+deb12u2_i386.deb b568dc52879cd7ec5e72e6fbe4d77582dc0f326aa2fe7c10dd00220912ffa0ed 1105380 libunbound8-dbgsym_1.17.1-2+deb12u2_i386.deb d50e35beed671eb186fb551b34382731b2a4e41c93730acfc0fc94d39c422314 582804 libunbound8_1.17.1-2+deb12u2_i386.deb e6b80805c462023c108d1338243bde6d80d9c6dda5719502bbad0ac2d37fafac 155368 python3-unbound-dbgsym_1.17.1-2+deb12u2_i386.deb 86cb92d6866806a4a0c1f0d19feca45b6490c85184967d373047f28c0b77bc87 203900 python3-unbound_1.17.1-2+deb12u2_i386.deb cf60f764678f963abacf26d64f551047982ebacc1243f5c1261974f71c71f86e 58120 unbound-anchor-dbgsym_1.17.1-2+deb12u2_i386.deb ffe1c4b2329ac2a215fd931213ac5013992b106df1614c66331a523fa9efb2c0 182256 unbound-anchor_1.17.1-2+deb12u2_i386.deb 36d2901a2a3b2dba43f26583cd2712bf412c5240ead8c4a105753f8556034c90 4440600 unbound-dbgsym_1.17.1-2+deb12u2_i386.deb 5e31f5ee6f891fd20262d5129a659f04ef6d661760fc81ab0e561d4171c7910e 112868 unbound-host-dbgsym_1.17.1-2+deb12u2_i386.deb f0c2aadb7dd328465e578db91a4979582d61fe7e123e8959a7213cbb22802216 204200 unbound-host_1.17.1-2+deb12u2_i386.deb 47b882c91f90a6adc0a148f86d8c580182c3aa0ce75c0157ddc7dc07d7681b32 10538 unbound_1.17.1-2+deb12u2_i386-buildd.buildinfo c7d7cf882a875d9a232ff367142e3747eccb9596128da8b972aaece0b3c14cbc 994232 unbound_1.17.1-2+deb12u2_i386.deb Files: 8a19d0ea60e3818e9d6723215c0eb1c5 682816 libdevel optional libunbound-dev_1.17.1-2+deb12u2_i386.deb 5cd15abafbe744e7a602a956885ca09f 1105380 debug optional libunbound8-dbgsym_1.17.1-2+deb12u2_i386.deb 2772dd75332b0fb700823adb8afae2e5 582804 libs optional libunbound8_1.17.1-2+deb12u2_i386.deb c90fe7a3c69e82d739af909b3ac3f993 155368 debug optional python3-unbound-dbgsym_1.17.1-2+deb12u2_i386.deb ec3d5bda2c3b4f76e40f5e1b118601c6 203900 python optional python3-unbound_1.17.1-2+deb12u2_i386.deb 03d8b168ed7c0c963ff5d08a1adb7fac 58120 debug optional unbound-anchor-dbgsym_1.17.1-2+deb12u2_i386.deb 2706e8c16df79310ebd5d51ba1e2c8fb 182256 net optional unbound-anchor_1.17.1-2+deb12u2_i386.deb b01681ed1088f69e0b76e5f013c6dc25 4440600 debug optional unbound-dbgsym_1.17.1-2+deb12u2_i386.deb 359434966bad2e3d97ceda10fe66d0ff 112868 debug optional unbound-host-dbgsym_1.17.1-2+deb12u2_i386.deb 43461da6727cd35e76a242561a4a4b59 204200 net optional unbound-host_1.17.1-2+deb12u2_i386.deb 3f206fab4925564e2f25fcc083cb1680 10538 net optional unbound_1.17.1-2+deb12u2_i386-buildd.buildinfo 03427c4370b24559465f0d62f1ee7a0d 994232 net optional unbound_1.17.1-2+deb12u2_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEqYm4ZPyuLwhx8Meo2VckltclZ4AFAmXLz/cACgkQ2Vckltcl Z4DKMg//ZLW21IOWy3pRFLwRWBb1QYqXUeyK8iBA4jtK5LIaNYGNcH6yJnBTx5Pm QlmzPJoBnBLzCXnYbUboQy/83EHvkd2sdIp7ArGGrbnSJMBau8kGV0bkarkd9xOg Cts1tGVbABbXMfmXKkiwpMogp6RTSBRX1nTtBdrDEgrlGyC1eUEG90JRVVTDS8rL CxXeWq9sSmyDqKu5AYimZx9n4yLfPnRUHmPho9cI9pGKzsZ9/eGRwWtydhB86IQo auRCIIqhBG3CHNzz3PGIpHVo8s+9Y1q4Z8zzvQCjD7BpPsJN9wdWRcZKAbnDI6WH LzehIQ0wF4EFa2zSM3H7xcdPJMBFXcFYloL2N81qgCKWm0vnyut7JmGwPuf2xeaU qZwxWLCH8FDxsZJAfZ1tLJjLm5aIpFRlGbi1N6vQiwib0wWbhTPCVBinP4bD8gEi 1V1oZwYTGQHJVA+8Q6lmhJZXH+oWk6zFm6vDwsUCiy1n8juffalqQm9LGSwGttTU E5GW5vsYui92on45yHCKsKLHOiybPUsrH0D++79RZOLGzMQ91FvdFc9QZm7uKQpU JPx+EL/5uqfOza6RNqZKLaIularxZF1loOPtYx0FMiILORNp6mJITUsae6klg2Lu 3lOXrYtC/6ce5VEM4AaiMYBu/iOIDDO/9H3HyKJezKuWLQeNpoU= =gC33 -----END PGP SIGNATURE-----