pdns.git
5 years agoInsufficient validation in the HTTP remote backend
pdns packagers [Mon, 12 Oct 2020 12:42:43 +0000 (13:42 +0100)]
Insufficient validation in the HTTP remote backend

Origin: upstream, https://downloads.powerdns.com/patches/2019-03/CVE-2019-3871-auth-4.1.6.patch
Bug: https://github.com/PowerDNS/pdns/issues/7573
Bug-Debian: https://bugs.debian.org/924966
Bug-Debian-Security: https://security-tracker.debian.org/tracker/CVE-2019-3871
Forwarded: not-needed
Reviewed-by: Salvatore Bonaccorso <carnil@debian.org>
Last-Update: 2019-03-29
Applied-Upstream: 4.1.7

Gbp-Pq: Name CVE-2019-3871-auth-4.1.6.patch

5 years agopdns (4.1.6-3+deb10u1) buster; urgency=medium
Chris Hofstaedtler [Mon, 12 Oct 2020 12:42:43 +0000 (13:42 +0100)]
pdns (4.1.6-3+deb10u1) buster; urgency=medium

  * Apply upstream patches to fix CVE-2019-10203.
    To actually fix this problem in existing installations, the newly
    supplied schema file 4.1.10_to_4.1.11.schema.pgsql.sql has to be
    manually applied to the backing PostgreSQL database. (Closes: #970729)
  * Apply upstream patches to fix CVE-2020-17482 (Closes: #970737)

[dgit import unpatched pdns 4.1.6-3+deb10u1]

5 years agoImport pdns_4.1.6-3+deb10u1.debian.tar.xz
Chris Hofstaedtler [Mon, 12 Oct 2020 12:42:43 +0000 (13:42 +0100)]
Import pdns_4.1.6-3+deb10u1.debian.tar.xz

[dgit import tarball pdns 4.1.6-3+deb10u1 pdns_4.1.6-3+deb10u1.debian.tar.xz]

6 years agoImport pdns_4.1.6.orig.tar.bz2
Chris Hofstaedtler [Sun, 3 Feb 2019 14:20:23 +0000 (14:20 +0000)]
Import pdns_4.1.6.orig.tar.bz2

[dgit import orig pdns_4.1.6.orig.tar.bz2]