[<prev] [next>] [thread-next>] [month] [year] [list]
Date: Sun, 01 Mar 2009 20:54:09 +0100
From: Florian Weimer <fw@...eb.enyo.de>
To: oss-security@...ts.openwall.com
Subject: CVE id request: tinydns crafted zone file cache poisoning vulnerability
tinydns from djbdns version 1.05 and earlier incorrectly implements
DNS label compression, allowing malicious zone editors to inject
poisonous records into the additional section.
<http://article.gmane.org/gmane.network.djbdns/13833>
Please check out the
Open Source Software Security Wiki, which is counterpart to this
mailing list.
Hosted by DataForce ISP -
Powered by Openwall GNU/*/Linux