Mageia 2019-0344: unbound security update
Summary
Updated unbound package to version 1.9.5 to fix a potential security
vulnerability. In case users recompiled the Mageia package with
`--enable-ipsecmod`, and ipsecmod is enabled and used in the configuration,
shell code execution would end up being possible after receiving a
specially crafted answer (CVE-2019-18934).
References
- https://bugs.mageia.org/show_bug.cgi?id=25713
- https://nlnetlabs.nl/downloads/unbound/CVE-2019-18934.txt
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-18934
Resolution
MGASA-2019-0344 - Updated unbound packages fix security vulnerability
SRPMS
- 7/core/unbound-1.9.5-1.mga7