--------------------------------------------------------------------------------Fedora Update Notification
FEDORA-2017-59127a606c
2017-07-27 14:24:45.247239
--------------------------------------------------------------------------------Name        : dhcp
Product     : Fedora 24
Version     : 4.3.4
Release     : 4.fc24
URL         : Summary     : Dynamic host configuration protocol software
Description :
DHCP (Dynamic Host Configuration Protocol)

--------------------------------------------------------------------------------Update Information:

Fixes CVE-2017-3142 and CVE-2017-3143
--------------------------------------------------------------------------------References:

  [ 1 ] Bug #1466610 - CVE-2017-3143 bind99: bind: An error in TSIG authentication can permit unauthorized dynamic updates [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=1466610
  [ 2 ] Bug #1466612 - CVE-2017-3142 bind99: bind: An error in TSIG authentication can permit unauthorized zone transfers [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=1466612
  [ 3 ] Bug #1471747 - ddns updates broken since rebuild with bind99 9.9.10
        https://bugzilla.redhat.com/show_bug.cgi?id=1471747
--------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade dhcp' at the command line.
For more information, refer to the dnf documentation available at
https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/security/
--------------------------------------------------------------------------------
_______________________________________________
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora 24: dhcp Security Update

July 27, 2017
Fixes CVE-2017-3142 and CVE-2017-3143

Summary

DHCP (Dynamic Host Configuration Protocol)

Fixes CVE-2017-3142 and CVE-2017-3143

[ 1 ] Bug #1466610 - CVE-2017-3143 bind99: bind: An error in TSIG authentication can permit unauthorized dynamic updates [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=1466610

[ 2 ] Bug #1466612 - CVE-2017-3142 bind99: bind: An error in TSIG authentication can permit unauthorized zone transfers [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=1466612

[ 3 ] Bug #1471747 - ddns updates broken since rebuild with bind99 9.9.10

https://bugzilla.redhat.com/show_bug.cgi?id=1471747

su -c 'dnf upgrade dhcp' at the command line.

For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

FEDORA-2017-59127a606c 2017-07-27 14:24:45.247239 Product : Fedora 24 Version : 4.3.4 Release : 4.fc24 URL : Summary : Dynamic host configuration protocol software Description : DHCP (Dynamic Host Configuration Protocol) Fixes CVE-2017-3142 and CVE-2017-3143 [ 1 ] Bug #1466610 - CVE-2017-3143 bind99: bind: An error in TSIG authentication can permit unauthorized dynamic updates [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1466610 [ 2 ] Bug #1466612 - CVE-2017-3142 bind99: bind: An error in TSIG authentication can permit unauthorized zone transfers [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1466612 [ 3 ] Bug #1471747 - ddns updates broken since rebuild with bind99 9.9.10 https://bugzilla.redhat.com/show_bug.cgi?id=1471747 su -c 'dnf upgrade dhcp' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ package-announce mailing list -- package-announce@lists.fedoraproject.org To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Change Log

References

Update Instructions

Severity
Product : Fedora 24
Version : 4.3.4
Release : 4.fc24
URL : Summary : Dynamic host configuration protocol software

Related News