oss-sec mailing list archives

Re: CVE request: maradns hash table collision cpu dos


From: Kurt Seifried <kseifrie () redhat com>
Date: Tue, 03 Jan 2012 14:04:42 -0700

On 01/03/2012 12:04 PM, Vincent Danen wrote:
* [2012-01-03 20:52:09 +0200] Henri Salo wrote:

On Tue, Jan 03, 2012 at 11:42:44AM -0700, Vincent Danen wrote:
MaraDNS has released an updated version to fix this hash table
collision
DoS.  Could a CVE be assigned to it?

References:

http://samiam.org/blog/20111229.html
http://samiam.org/blog/20111230.html
https://bugzilla.redhat.com/show_bug.cgi?id=771428

Thanks.

-- 
Vincent Danen / Red Hat Security Response Team

Please note: http://www.openwall.com/lists/oss-security/2012/01/02/12

Ahh, I hadn't seen that one yet.  Thanks, Henri.  The title in that
email isn't overly descriptive which is why I didn't notice it (holiday
mail catchup swamping everything).

Place holder to complete this thread:

This issue was previously assigned CVE-2012-0024

-- 

-- Kurt Seifried / Red Hat Security Response Team


Current thread: