mirror of
https://gitlab.isc.org/isc-projects/bind9
synced 2025-08-30 14:07:59 +00:00
Add CHANGES and release note for GL #1996
This commit is contained in:
committed by
Michał Kępień
parent
38264b6a4d
commit
f2b41e11b4
4
CHANGES
4
CHANGES
@@ -18,7 +18,9 @@
|
|||||||
|
|
||||||
5479. [placeholder]
|
5479. [placeholder]
|
||||||
|
|
||||||
5478. [placeholder]
|
5478. [security] It was possible to trigger an assertion failure by
|
||||||
|
sending a specially crafted large TCP DNS message.
|
||||||
|
(CVE-2020-8620) [GL #1996]
|
||||||
|
|
||||||
5477. [bug] The idle timeout for connected TCP sockets is now
|
5477. [bug] The idle timeout for connected TCP sockets is now
|
||||||
derived from the client query processing timeout
|
derived from the client query processing timeout
|
||||||
|
@@ -14,7 +14,11 @@ Notes for BIND 9.17.4
|
|||||||
Security Fixes
|
Security Fixes
|
||||||
~~~~~~~~~~~~~~
|
~~~~~~~~~~~~~~
|
||||||
|
|
||||||
- None.
|
- It was possible to trigger an assertion failure by sending a specially
|
||||||
|
crafted large TCP DNS message. This was disclosed in CVE-2020-8620.
|
||||||
|
|
||||||
|
ISC would like to thank Emanuel Almeida of Cisco Systems, Inc. for
|
||||||
|
bringing this vulnerability to our attention. [GL #1996]
|
||||||
|
|
||||||
Known Issues
|
Known Issues
|
||||||
~~~~~~~~~~~~
|
~~~~~~~~~~~~
|
||||||
|
Reference in New Issue
Block a user