{"affected":[{"ecosystem_specific":{"binaries":[{"bind":"9.16.6-lp152.14.19.1","bind-chrootenv":"9.16.6-lp152.14.19.1","bind-devel":"9.16.6-lp152.14.19.1","bind-devel-32bit":"9.16.6-lp152.14.19.1","bind-doc":"9.16.6-lp152.14.19.1","bind-utils":"9.16.6-lp152.14.19.1","libbind9-1600":"9.16.6-lp152.14.19.1","libbind9-1600-32bit":"9.16.6-lp152.14.19.1","libdns1605":"9.16.6-lp152.14.19.1","libdns1605-32bit":"9.16.6-lp152.14.19.1","libirs-devel":"9.16.6-lp152.14.19.1","libirs1601":"9.16.6-lp152.14.19.1","libirs1601-32bit":"9.16.6-lp152.14.19.1","libisc1606":"9.16.6-lp152.14.19.1","libisc1606-32bit":"9.16.6-lp152.14.19.1","libisccc1600":"9.16.6-lp152.14.19.1","libisccc1600-32bit":"9.16.6-lp152.14.19.1","libisccfg1600":"9.16.6-lp152.14.19.1","libisccfg1600-32bit":"9.16.6-lp152.14.19.1","libns1604":"9.16.6-lp152.14.19.1","libns1604-32bit":"9.16.6-lp152.14.19.1","python3-bind":"9.16.6-lp152.14.19.1"}]},"package":{"ecosystem":"openSUSE:Leap 15.2","name":"bind","purl":"pkg:rpm/opensuse/bind&distro=openSUSE%20Leap%2015.2"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"9.16.6-lp152.14.19.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"This update for bind fixes the following issues:\n\n- CVE-2021-25214: Fixed a broken inbound incremental zone update (IXFR) which could have caused named to terminate unexpectedly (bsc#1185345).\n- CVE-2021-25215: Fixed an assertion check which could have failed while answering queries for DNAME records that required the DNAME to be processed to resolve itself (bsc#1185345).\n- make /usr/bin/delv in bind-tools position independent (bsc#1183453).\n\nThis update was imported from the SUSE:SLE-15:Update update project.","id":"openSUSE-SU-2021:0668-1","modified":"2021-05-04T13:21:34Z","published":"2021-05-04T13:21:34Z","references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/UD5BSX5LOILOZXTGH6JJ7MLM4XBTKK6O/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1183453"},{"type":"REPORT","url":"https://bugzilla.suse.com/1185345"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-25214"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-25215"}],"related":["CVE-2021-25214","CVE-2021-25215"],"summary":"Security update for bind","upstream":["CVE-2021-25214","CVE-2021-25215"]}