Skip to content

[AUTOPATCHER-CORE] Upgrade bind to 9.20.18 for CVE-2025-13878#15554

Merged
LeoMar4 merged 2 commits into3.0-devfrom
cblmargh/bind-upgrade-to-9.20.18-3.0-dev
Jan 27, 2026
Merged

[AUTOPATCHER-CORE] Upgrade bind to 9.20.18 for CVE-2025-13878#15554
LeoMar4 merged 2 commits into3.0-devfrom
cblmargh/bind-upgrade-to-9.20.18-3.0-dev

Conversation

@CBL-Mariner-Bot
Copy link
Collaborator

@CBL-Mariner-Bot CBL-Mariner-Bot commented Jan 21, 2026

[AUTOPATCHER-CORE] Upgrade bind to 9.20.18 for CVE-2025-13878
Upgrade pipeline run -> https://dev.azure.com/mariner-org/mariner/_build/results?buildId=1032308&view=results

buddy build -> 1032329

@Kanishk-Bansal Kanishk-Bansal marked this pull request as ready for review January 21, 2026 22:00
@Kanishk-Bansal Kanishk-Bansal requested a review from a team as a code owner January 21, 2026 22:00
@Kanishk-Bansal Kanishk-Bansal self-assigned this Jan 21, 2026
@Kanishk-Bansal Kanishk-Bansal added the CVE-fixed-by-upgrade CVE fixed by package upgrade label Jan 22, 2026
@Kanishk-Bansal Kanishk-Bansal changed the title [AUTOPATCHER-CORE] Upgrade bind to 9.20.18 for CVE-2025-13878 [AUTOPATCHER-CORE] Upgrade bind to 9.20.18 for CVE-2025-13878 Jan 22, 2026
@Kanishk-Bansal
Copy link
Contributor

CVE is fixed in 9.20.18 at https://gitlab.isc.org/isc-projects/bind9/-/blob/v9.20.18/doc/changelog/changelog-9.20.18.rst?ref_type=tags

Copy link
Member

@mfrw mfrw left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM :)
Linking the changelog
No breaking changes.

@Kanishk-Bansal Kanishk-Bansal added the ready-for-stable-review PR has passed initial review and is now ready for a second-level stable maintainer review label Jan 27, 2026
@LeoMar4 LeoMar4 merged commit b6662b8 into 3.0-dev Jan 27, 2026
29 of 32 checks passed
@LeoMar4 LeoMar4 deleted the cblmargh/bind-upgrade-to-9.20.18-3.0-dev branch January 27, 2026 06:31
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

3.0-dev PRs Destined for AzureLinux 3.0 Automatic PR AutoUpgrade Core CVE-fixed-by-upgrade CVE fixed by package upgrade Packaging ready-for-stable-review PR has passed initial review and is now ready for a second-level stable maintainer review security

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants