Wed Oct 10 03:04:57 2012 UTC ()
Update bind96 to 9.6.3.1.ESV.7pl4 (BIND 9.6-ESV-R7-P4).

Here are change changes from release note.  Note security fixes except
CVE-2012-5166 should be already fixed in previous version of bind96 package.

Please refer https://kb.isc.org/article/AA-00795 for list of full bug fixes.

Security Fixes

* A deliberately constructed combination of records could cause named to hang
  while populating the additional section of a response. [CVE-2012-5166] [RT
  #31090]
* Prevents a named assert (crash) when queried for a record whose RDATA
  exceeds 65535 bytes [CVE-2012-4244] [RT #30416]
* Prevents a named assert (crash) when validating caused by using "Bad cache"
  data before it has been initialized. [CVE-2012-3817] [RT #30025]
* A condition has been corrected where improper handling of zero-length RDATA
  could cause undesirable behavior, including termination of the named
  process. [CVE-2012-1667] [RT #29644]

New Features

  None

Feature Changes

* Improves OpenSSL error logging [RT #29932]
* nslookup now returns a nonzero exit code when it is unable to get an answer.
  [RT #29492]


(taca)
diff -r1.31 -r1.32 pkgsrc/net/bind96/Makefile
diff -r1.20 -r1.21 pkgsrc/net/bind96/distinfo

cvs diff -r1.31 -r1.32 pkgsrc/net/bind96/Attic/Makefile (expand / switch to unified diff)

--- pkgsrc/net/bind96/Attic/Makefile 2012/10/03 21:56:52 1.31
+++ pkgsrc/net/bind96/Attic/Makefile 2012/10/10 03:04:57 1.32
@@ -1,33 +1,32 @@ @@ -1,33 +1,32 @@
1# $NetBSD: Makefile,v 1.31 2012/10/03 21:56:52 wiz Exp $ 1# $NetBSD: Makefile,v 1.32 2012/10/10 03:04:57 taca Exp $
2 2
3DISTNAME= bind-${BIND_VERSION} 3DISTNAME= bind-${BIND_VERSION}
4PKGNAME= ${DISTNAME:S/-ESV/.3.1.ESV/:S/-R/./:S/-P/pl/} 4PKGNAME= ${DISTNAME:S/-ESV/.3.1.ESV/:S/-R/./:S/-P/pl/}
5PKGREVISION= 1 
6CATEGORIES= net 5CATEGORIES= net
7MASTER_SITES= ftp://ftp.isc.org/isc/bind9/${BIND_VERSION}/ \ 6MASTER_SITES= ftp://ftp.isc.org/isc/bind9/${BIND_VERSION}/ \
8 http://ftp.belnet.be/pub/mirror/ftp.isc.org/isc/bind9/${BIND_VERSION}/ 7 http://ftp.belnet.be/pub/mirror/ftp.isc.org/isc/bind9/${BIND_VERSION}/
9 8
10MAINTAINER= pkgsrc-users@NetBSD.org 9MAINTAINER= pkgsrc-users@NetBSD.org
11HOMEPAGE= http://www.isc.org/software/bind/ 10HOMEPAGE= http://www.isc.org/software/bind/
12COMMENT= Version 9.6 of the Berkeley Internet Name Daemon, implementation of DNS 11COMMENT= Version 9.6 of the Berkeley Internet Name Daemon, implementation of DNS
13 12
14CONFLICTS+= bind<9.6.0 13CONFLICTS+= bind<9.6.0
15 14
16PKG_DESTDIR_SUPPORT= user-destdir 15PKG_DESTDIR_SUPPORT= user-destdir
17 16
18MAKE_JOBS_SAFE= no 17MAKE_JOBS_SAFE= no
19 18
20BIND_VERSION= 9.6-ESV-R7-P3 19BIND_VERSION= 9.6-ESV-R7-P4
21 20
22.include "../../mk/bsd.prefs.mk" 21.include "../../mk/bsd.prefs.mk"
23 22
24BUILD_DEFS+= BIND_DIR VARBASE 23BUILD_DEFS+= BIND_DIR VARBASE
25 24
26.include "options.mk" 25.include "options.mk"
27 26
28USE_TOOLS+= pax perl 27USE_TOOLS+= pax perl
29USE_LIBTOOL= yes 28USE_LIBTOOL= yes
30GNU_CONFIGURE= yes 29GNU_CONFIGURE= yes
31#CONFIG_SHELL= sh -x 30#CONFIG_SHELL= sh -x
32 31
33CONFIGURE_ARGS+= --with-libtool 32CONFIGURE_ARGS+= --with-libtool

cvs diff -r1.20 -r1.21 pkgsrc/net/bind96/Attic/distinfo (expand / switch to unified diff)

--- pkgsrc/net/bind96/Attic/distinfo 2012/09/13 01:32:54 1.20
+++ pkgsrc/net/bind96/Attic/distinfo 2012/10/10 03:04:57 1.21
@@ -1,10 +1,10 @@ @@ -1,10 +1,10 @@
1$NetBSD: distinfo,v 1.20 2012/09/13 01:32:54 taca Exp $ 1$NetBSD: distinfo,v 1.21 2012/10/10 03:04:57 taca Exp $
2 2
3SHA1 (bind-9.6-ESV-R7-P3.tar.gz) = 86043835feb1dcdb9043e1e62ed6541cc238b418 3SHA1 (bind-9.6-ESV-R7-P4.tar.gz) = fc069ac53d336b6ebe2070e2c034edd6ea6c3264
4RMD160 (bind-9.6-ESV-R7-P3.tar.gz) = a1ce1a5026456de1500c56eea63023111a2f7489 4RMD160 (bind-9.6-ESV-R7-P4.tar.gz) = dc708516e8b6dd42a6ce637dda82b989deb22aaf
5Size (bind-9.6-ESV-R7-P3.tar.gz) = 6411767 bytes 5Size (bind-9.6-ESV-R7-P4.tar.gz) = 6419312 bytes
6SHA1 (patch-ab) = 6cec876c8caa7082f97365863f3f88c4f168da48 6SHA1 (patch-ab) = 6cec876c8caa7082f97365863f3f88c4f168da48
7SHA1 (patch-ac) = 074649e1514870a3154c623a5f6d1507b72b5b05 7SHA1 (patch-ac) = 074649e1514870a3154c623a5f6d1507b72b5b05
8SHA1 (patch-ad) = 3fcfac007f7823d48573459e57810f442c5b7d2f 8SHA1 (patch-ad) = 3fcfac007f7823d48573459e57810f442c5b7d2f
9SHA1 (patch-ag) = ffc547b444f01f51a12a01cfa884916a9a411a88 9SHA1 (patch-ag) = ffc547b444f01f51a12a01cfa884916a9a411a88
10SHA1 (patch-am) = a52d847354cd83b2474d5420925925e4614c966f 10SHA1 (patch-am) = a52d847354cd83b2474d5420925925e4614c966f