[Dnsmasq-discuss] DNSSEC validation causes SIGSEGV by strcpy from 0x0

Alex Xu alex_y_xu at yahoo.ca
Wed Mar 26 14:01:01 UTC 2014


On 26/03/14 08:27 AM, Simon Kelley wrote:
> On 25/03/14 23:03, Alex Xu wrote:
> 
>>>
> 
>> Poor wording on my part. I meant that `dig isc.org @74.82.42.42
>> +dnssec` returns no results, but `dig isc.org rrsig @74.82.42.42`
>> does.
> 
> 
> That's no good as an upstream server: you need the RRSIGs in the
> answer, which is what a DNS server with DNSSEC support does.
> (Otherwise, every query which got an answer without RRSIGS would need
> another query to see if they exist or not, that would be very slow.)#

I know, I didn't realise that I had that nameserver configured on this
machine.

> I just pushed the fix to your crash bug.

Thanks. Regardless of configuration, dnsmasq certainly shouldn't crash.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: OpenPGP digital signature
URL: <http://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/attachments/20140326/bae20eb7/attachment.sig>


More information about the Dnsmasq-discuss mailing list