{"schema_version":"1.7.3","id":"openSUSE-SU-2018:1462-1","published":"2018-05-29T10:59:00Z","modified":"2026-02-04T02:24:49.338244Z","related":["CVE-2018-1046"],"upstream":["CVE-2018-1046"],"summary":"Security update for pdns","details":"\npdns was updated to 4.1.2.\n\nSecurity fixes:\n\n* Dnsreplay: bail out on a too small outgoing buffer (CVE-2018-1046 bsc#1092540)\n\nImprovements:\n\n* API: increase serial after dnssec related updates\n* Auth: lower ‘packet too short’ loglevel\n* Make check-zone error on rows that have content but shouldn’t\n* Auth: avoid an isane amount of new backend connections during an axfr\n* Report unparseable data in stoul invalid_argument exception\n* Backport: recheck serial when axfr is done\n* Backport: add tcp support for alias\n\nBug Fixes:\n\n* Auth: allocate new statements after reconnecting to postgresql\n* Auth-bindbackend: only compare ips in ismaster() (Kees Monshouwer)\n* Rather than crash, sheepishly report no file/linenum\n* Document undocumented config vars\n* Backport #6276 (auth 4.1.x): prevent cname + other data with dnsupdate\n\nMisc fixes:\n\n* Move includes around to avoid boost L conflict\n* Backport: update edns option code list\n* Auth: link dnspcap2protobuf against librt when needed\n* Fix a warning on botan &gt;= 2.5.0\n* Auth 4.1.x: unbreak build\n\n","affected":[{"package":{"name":"pdns","ecosystem":"SUSE:Package Hub 12 SP1","purl":"pkg:rpm/suse/pdns&distro=SUSE%20Package%20Hub%2012%20SP1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.1.2-8.1"}]}],"ecosystem_specific":{"binaries":[{"pdns":"4.1.2-8.1","pdns-backend-godbc":"4.1.2-8.1","pdns-backend-ldap":"4.1.2-8.1","pdns-backend-lua":"4.1.2-8.1","pdns-backend-mydns":"4.1.2-8.1","pdns-backend-mysql":"4.1.2-8.1","pdns-backend-postgresql":"4.1.2-8.1","pdns-backend-remote":"4.1.2-8.1","pdns-backend-sqlite3":"4.1.2-8.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2018:1462-1.json"}}],"references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/HQSPXZY2QFCLZMVTDYNDOWYILQUQS6NR/#HQSPXZY2QFCLZMVTDYNDOWYILQUQS6NR"},{"type":"REPORT","url":"https://bugzilla.suse.com/1092540"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-1046"}]}