[LWN Logo]

Date: Sat, 5 Sep 1998 02:09:03 +0200
From: Wichert Akkerman <wakkerma@debian.org>
To: debian-security-announce@lists.debian.org
Subject: [SECURITY] New version of bind fixes buffer overflows


--r5Pyd7+fXNt84Ff3
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: quoted-printable


We have received reports that the nslookup and dig utilities as shipped
with current distribution of Linux contain possible buffer overflows.

We recommend you upgrade your bind package immediately.

wget url
	will fetch the file for you
dpkg -i file.deb
        will install the referenced file.

Debian GNU/Linux 2.0 alias hamm
-------------------------------

  This version of Debian was released only for the Intel and the
  Motorola 68xxx architecture.


  Source archives:
    ftp://ftp.debian.org/debian/dists/proposed-updates/bind_8.1.2-3.diff.gz
	  MD5 checksum: 9aefb8dd6234378abe3be31d6ee0828c
    ftp://ftp.debian.org/debian/dists/proposed-updates/bind_8.1.2-3.dsc
	  MD5 checksum: e43b5c0cd0b46add51ecefebc62e4184
	ftp://ftp.debian.org/debian/dists/proposed-updates/bind_8.1.2-3_i386.chang=
es
	  MD5 checksum: 693ccccf1058f5c2c242f2f4fd2b0a88

  Intel architecture:
    ftp://ftp.debian.org/debian/dists/proposed-updates/bind_8.1.2-3_i386.deb
      MD5 checksum: 9401806014631fe9a1c1b9eacba42db7
    ftp://ftp.debian.org/debian/dists/proposed-updates/dnsutils_8.1.2-3_i38=
6.deb
      MD5 checksum: a88147b3013158b75ab8ca97b3afc950

  Motorola 68xxx architecture:
    ftp://ftp.debian.org/debian/dists/proposed-updates/bind_8.1.2-3_m68k.deb
      MD5 checksum: f62cd6d695aa8096078adfc0d50f0f8f
    ftp://ftp.debian.org/debian/dists/proposed-updates/dnsutils_8.1.2-3_m68=
k.deb
      MD5 checksum: 2ca7a3ca062eaf44fbc64fd93e0f795a

  These files will be moved into
  ftp://ftp.debian.org/debian/dists/hamm/*/binary-$arch/main/ soon.


For not yet released architectures please refer to the appropriate
directory ftp://ftp.debian.org/debian/dists/sid/binary-$arch/main/ .

--=20
Debian GNU/Linux      .    Security Managers      .  security@debian.org
	      debian-security-announce@lists.debian.org
  Christian Hudon     .      Wichert Akkerman     .     Martin Schulze
<chrish@debian.org>   .   <wakkerma@debian.org>   .   <joey@debian.org>


--r5Pyd7+fXNt84Ff3
Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3ia

iQB1AwUBNfCBH6jZR/ntlUftAQFvsAL/cnfdh3YnDzqyoaH0zmsz1KeG7RSuUPV4
la0poIh9TY0MWVilzfk/xZXGVdf91hv0kcKq/Ol6Zdlq6rgRYFxgXE6rBXkD5x6M
X6bWsLSOFydpR9q12XEq0/Wm2/2fCsTk
=62Y8
-----END PGP SIGNATURE-----

--r5Pyd7+fXNt84Ff3--


--  
To UNSUBSCRIBE, email to debian-security-announce-request@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org