<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="5c696f1a00acd08086f59287bdbfb6fb"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="426">
  <id>dbg111-bind</id>
  <title>bind: spoofing signed mesages</title>
  <release>openSUSE 11.1</release>
  <issued date="1232987652"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=464462" id="464462" title="bug number 464462" type="bugzilla"/>
  </references>
  <description>This update improves the verification of return values of
openssl functions.  Prior this update it was possible to
spoof answers signed with DSA and NSEC3DSA. (CVE-2009-0025)
</description>
  <pkglist>
    <collection>
        <package name="bind-debuginfo" arch="i586" version="9.5.0P2" release="18.5.1">
          <filename>bind-debuginfo-9.5.0P2-18.5.1.i586.rpm</filename>
        </package>
        <package name="bind-debuginfo" arch="ppc" version="9.5.0P2" release="18.5.1">
          <filename>bind-debuginfo-9.5.0P2-18.5.1.ppc.rpm</filename>
        </package>
        <package name="bind-debuginfo" arch="x86_64" version="9.5.0P2" release="18.5.1">
          <filename>bind-debuginfo-9.5.0P2-18.5.1.x86_64.rpm</filename>
        </package>
        <package name="bind-debugsource" arch="i586" version="9.5.0P2" release="18.5.1">
          <filename>bind-debugsource-9.5.0P2-18.5.1.i586.rpm</filename>
        </package>
        <package name="bind-debugsource" arch="ppc" version="9.5.0P2" release="18.5.1">
          <filename>bind-debugsource-9.5.0P2-18.5.1.ppc.rpm</filename>
        </package>
        <package name="bind-debugsource" arch="x86_64" version="9.5.0P2" release="18.5.1">
          <filename>bind-debugsource-9.5.0P2-18.5.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
