openSUSE Security Update : bind (openSUSE-2016-382)
Medium Nessus Plugin ID 90106
SynopsisThe remote openSUSE host is missing a security update.
DescriptionThis update for bind fixes the following issues :
Fix two assertion failures that can lead to a remote denial of service attack :
- CVE-2016-1285: An error when parsing signature records for DNAME can lead to named exiting due to an assertion failure. (bsc#970072)
- CVE-2016-1286: An error when parsing signature records for DNAME records having specific properties can lead to named exiting due to an assertion failure in resolver.c or db.c. (bsc#970073)
This update was imported from the SUSE:SLE-12-SP1:Update update project.
SolutionUpdate the affected bind packages.