ELA-270-1 bind9 security update

denial of service with TSIG-signed requests

2020-08-30
Packagebind9
Version1:9.9.5.dfsg-9+deb8u20
Related CVEs CVE-2020-8622


Crafted responses to TSIG-signed requests could lead to an assertion failure, causing named, a Domain Name Server, to exit. This could be done by malicious server operators or guessing attackers.



For Debian 8 jessie, these problems have been fixed in version 1:9.9.5.dfsg-9+deb8u20.

We recommend that you upgrade your bind9 packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.