oss-sec mailing list archives

Re: CVE request: maradns hash table collision cpu dos


From: Vincent Danen <vdanen () redhat com>
Date: Tue, 3 Jan 2012 12:04:18 -0700

* [2012-01-03 20:52:09 +0200] Henri Salo wrote:

On Tue, Jan 03, 2012 at 11:42:44AM -0700, Vincent Danen wrote:
MaraDNS has released an updated version to fix this hash table collision
DoS.  Could a CVE be assigned to it?

References:

http://samiam.org/blog/20111229.html
http://samiam.org/blog/20111230.html
https://bugzilla.redhat.com/show_bug.cgi?id=771428

Thanks.

--
Vincent Danen / Red Hat Security Response Team

Please note: http://www.openwall.com/lists/oss-security/2012/01/02/12

Ahh, I hadn't seen that one yet.  Thanks, Henri.  The title in that
email isn't overly descriptive which is why I didn't notice it (holiday
mail catchup swamping everything).

--
Vincent Danen / Red Hat Security Response Team

Current thread: