From 524ca73aa1a653a281a7b078ea270c721775b310 Mon Sep 17 00:00:00 2001 From: Tinderbox User Date: Wed, 31 May 2017 01:33:20 +0000 Subject: [PATCH] regen v9_9 --- doc/arm/Bv9ARM.ch09.html | 18 +++++++++++++++--- doc/arm/notes.html | 18 +++++++++++++++--- 2 files changed, 30 insertions(+), 6 deletions(-) diff --git a/doc/arm/Bv9ARM.ch09.html b/doc/arm/Bv9ARM.ch09.html index 9c159b3db0..276ddda036 100644 --- a/doc/arm/Bv9ARM.ch09.html +++ b/doc/arm/Bv9ARM.ch09.html @@ -120,11 +120,23 @@

Security Fixes

-
  • +
      +
    • - None. + The BIND installer on Windows used an unquoted service path, + which can enable privilege escalation. This flaw is disclosed + in CVE-2017-3141. [RT #45229]

      -
    +
  • +
  • +

    + With certain RPZ configurations, a response with TTL 0 + could cause named to go into an infinite + query loop. This flaw is disclosed in CVE-2017-3140. + [RT #45181] +

    +
  • +
diff --git a/doc/arm/notes.html b/doc/arm/notes.html index a0d42be9fd..861b281c2a 100644 --- a/doc/arm/notes.html +++ b/doc/arm/notes.html @@ -83,11 +83,23 @@

Security Fixes

-
  • +
      +
    • - None. + The BIND installer on Windows used an unquoted service path, + which can enable privilege escalation. This flaw is disclosed + in CVE-2017-3141. [RT #45229]

      -
    +
  • +
  • +

    + With certain RPZ configurations, a response with TTL 0 + could cause named to go into an infinite + query loop. This flaw is disclosed in CVE-2017-3140. + [RT #45181] +

    +
  • +