[Dnsmasq-discuss] Impact of CVE-2008-1447 forgery resilience?

Gilles Espinasse g.esp at free.fr
Wed Jul 9 10:20:07 BST 2008


An important flaw in dns protocol has been announced yesterday.
http://www.kb.cert.org/vuls/id/800113
http://www.isc.org/index.pl?/sw/bind/forgery-resilience.php

As the result, bind is delivering patched version that will implement a forgery
resilience extension (per-query source port randomization).

What is the consequence for dnsmasq (short and long term)?

I understand Simon position on dnssec stated on december
http://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2007q4/001704.html


Gilles



More information about the Dnsmasq-discuss mailing list