From nobody Wed Oct 09 20:27:13 2024 X-Original-To: dev-commits-ports-all@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4XP4Dy1TWjz5Yxr9; Wed, 09 Oct 2024 20:27:14 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R11" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4XP4Dy0qdZz4WVg; Wed, 9 Oct 2024 20:27:14 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1728505634; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=9wyyMz93fPWjIiL/LIwQKt1Zz2vYILFuhys1gmHjvRc=; b=fs2qQmk8IzhhjKO+AZqo4ty5l/1WZy6DTn58hwLqSQMmeUKkLdIi4MD78dgQ1VDoXCoP7z 4JjnYyamRbM2Pe5PFKgBnZ4GyDL6KLsArEBYg4NVBOIscMIsRtmKWeGUry/6kKi9YlFW7U 7Hm+GH/adTOQYpgmnCZJ9T6qSuMpoL+ivnws/cb8mEnUfCnvSq3gfd7a01t/0O9Usr9UPY 1gvJh1SbMehH7mAt/q8RCRRMA0CCR/lAg57vX5MQpt2cCZdS2O3eU8Xor37QgZcNUEjhEy +cGfspAGwBiBaAnule9lFC6Mp1E+27cE+tfdUOg6DiJCOvfJV43ftyJbLVEPSA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1728505634; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=9wyyMz93fPWjIiL/LIwQKt1Zz2vYILFuhys1gmHjvRc=; b=Y+2fCV+k1921MQQRP2T9S6V49ve0c0PqnlXReYWyhLV+orhLaTNzOlkgWb0z4eavmhGSwh bsym2ChwAo485WHRvuPHDq5NkTo/kebNHQZ+vx3NVcZGrZxBOQCGpjdDIC65AMFoqUSXpi Aey8QZOrZzfwIbzobywbzkrHzQZNAg4MsTNyafjyobLpTFK/uNvyz1/4w6TOarFevEEZ8c L2TV30VyST/+7CH6dGl4tF1u3LvvS6Hur/vHebAKOEQWx5vrwFafWbr8TNs+ZG5ebUhTDs tX6LQwcx0QEib0WYzyRDDUgNiDG7kj/+zKq1QMpIY9IzxOuc3qozfNwaWXi/UA== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1728505634; a=rsa-sha256; cv=none; b=qTD8b5AwppOs8idktkTPJ4aJ6TqGfKAS0sNA8O7s1WWFIB51Ime9B8+4HVn6+xfvD2/CXO yguPeLXm/yfvV7pPmKkE+fl8lQZgsTCviwxmSaWxAWdXe2tV1gefbPr6cWJDdb/H9tRhTV DxkUpDW73CAkEu08UzCEsJICzDoQ51cEtf2WeUmFikn3mDmtuNmRKKQKMdUHoH1/9h8vsh Ktad9jDpMYBkqhRfj51lX764yJyMkOoYpW/4hPOvNo+Y2YQYqjuFADkUFdKgTJDMJ/AJCU i0P30ldoN4nRM+DamgldTFYn9RmFB9FMu6xNxjXG9SteblR7S05EBEeITsydjQ== Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4XP4Dy0NvtzT59; Wed, 9 Oct 2024 20:27:14 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.18.1/8.18.1) with ESMTP id 499KRDlP057541; Wed, 9 Oct 2024 20:27:13 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.18.1/8.18.1/Submit) id 499KRDJS057538; Wed, 9 Oct 2024 20:27:13 GMT (envelope-from git) Date: Wed, 9 Oct 2024 20:27:13 GMT Message-Id: <202410092027.499KRDJS057538@gitrepo.freebsd.org> To: ports-committers@FreeBSD.org, dev-commits-ports-all@FreeBSD.org, dev-commits-ports-main@FreeBSD.org From: Vladimir Druzenko Subject: git: bbb9892c217f - main - security/vuxml: Add record about CVE-2024-25590 in dns/powerdns-recursor List-Id: Commit messages for all branches of the ports repository List-Archive: https://lists.freebsd.org/archives/dev-commits-ports-all List-Help: List-Post: List-Subscribe: List-Unsubscribe: X-BeenThere: dev-commits-ports-all@freebsd.org Sender: owner-dev-commits-ports-all@FreeBSD.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: vvd X-Git-Repository: ports X-Git-Refname: refs/heads/main X-Git-Reftype: branch X-Git-Commit: bbb9892c217f047fc2c160b1f327967ebdc78824 Auto-Submitted: auto-generated The branch main has been updated by vvd: URL: https://cgit.FreeBSD.org/ports/commit/?id=bbb9892c217f047fc2c160b1f327967ebdc78824 commit bbb9892c217f047fc2c160b1f327967ebdc78824 Author: Ralf van der Enden AuthorDate: 2024-10-09 20:25:23 +0000 Commit: Vladimir Druzenko CommitDate: 2024-10-09 20:26:44 +0000 security/vuxml: Add record about CVE-2024-25590 in dns/powerdns-recursor PowerDNS Recursor Security Advisory 2024-04: https://blog.powerdns.com/2024/10/03/powerdns-recursor-4-9-9-5-0-9-5-1-2-released PR: 281914 --- security/vuxml/vuln/2024.xml | 26 ++++++++++++++++++++++++++ 1 file changed, 26 insertions(+) diff --git a/security/vuxml/vuln/2024.xml b/security/vuxml/vuln/2024.xml index d387ffc914fd..35d4997cca74 100644 --- a/security/vuxml/vuln/2024.xml +++ b/security/vuxml/vuln/2024.xml @@ -1,3 +1,29 @@ + + powerdns-recursor -- denial of service + + + powerdns-recursor + 5.1.2 + + + + +

PowerDNS Team reports:

+
+

PowerDNS Security Advisory 2024-04: Crafted responses can lead to + a denial of service due to cache inefficiencies in the Recursor

+
+ +
+ + CVE-2024-25590 + https://doc.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-04.html + + + 2024-10-03 + 2024-10-09 + +
chromium -- multiple security fixes