bind: bump to 9.20.23
authorNoah Meyerhans <redacted>
Mon, 25 May 2026 15:09:01 +0000 (11:09 -0400)
committerNoah Meyerhans <redacted>
Fri, 29 May 2026 13:25:01 +0000 (09:25 -0400)
commit2394fbf0608f4ce09c070d5b20c7176123871f39
tree0c251ab76671484b6348ab83eeb64ae5d48d281e
parentfaeecaeb1457039fb9c1a48c90fb12fceee30fac
bind: bump to 9.20.23

Resolves several security issues:

- CVE-2026-3592: Limit resolver server list size.
- CVE-2026-3039: Fix GSS-API resource leak.
- CVE-2026-5950: Avoid unbounded recursion loop.
- CVE-2026-5947: Fix crash in resolver when SIG(0)-signed responses are
  received under load.
- CVE-2026-3593: Add system test for HTTP/2 SETTINGS frame flood.
- CVE-2026-5946: Disable recursion, UPDATE, and NOTIFY for non-IN views.

Complete list of changes is available upstream at
https://ftp.isc.org/isc/bind9/9.20.23/doc/arm/html/changelog.html

Signed-off-by: Noah Meyerhans <redacted>
net/bind/Makefile
net/bind/patches/fix-usr-allow-rndc-addzone#1.patch
net/bind/patches/fix-usr-allow-rndc-addzone#2.patch
net/bind/patches/fix-usr-allow-rndc-addzone#4.patch
git clone https://git.99rst.org/PROJECT