oss-sec mailing list archives

Re: CVE Request New-djbdns: dnscache: potential cache poisoning


From: P J P <ppandit () redhat com>
Date: Wed, 12 Feb 2014 12:02:02 +0530 (IST)

   Hello Michael,

+-- On Wed, 12 Feb 2014, Michael Samuel wrote --+
| but I was referring to having a pool of IP addresses attached to the DNS 
| server for the purpose of sending outbound requests,

  Well, a resolver always starts by sending queries to one of the 13 root 
servers and then descends towards authoritative name servers as directed by 
the top ones.

Thank you.
--
Prasad J Pandit / Red Hat Security Response Team


Current thread: