|
Message-ID: <87ocwlxbmm.fsf@mid.deneb.enyo.de> Date: Sun, 01 Mar 2009 20:54:09 +0100 From: Florian Weimer <fw@...eb.enyo.de> To: oss-security@...ts.openwall.com Subject: CVE id request: tinydns crafted zone file cache poisoning vulnerability tinydns from djbdns version 1.05 and earlier incorrectly implements DNS label compression, allowing malicious zone editors to inject poisonous records into the additional section. <http://article.gmane.org/gmane.network.djbdns/13833>
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.