Bug#406465: [bind backend] TXT record parsing overflow with special characters

2007-02-16 Thread Jeroen van Wolffelaar
On Sat, Feb 10, 2007 at 11:13:11AM +0100, Jeroen van Wolffelaar wrote: An option, therefore, is to have a pdns uploaded without the bind backend, and a NEWS.Debian stating that sorry, no bind backend available, because it's not of release quality or something. Since other than our brief

Bug#406465: [bind backend] TXT record parsing overflow with special characters

2007-02-16 Thread Christoph Haas
On Friday 16 February 2007 13:57, Jeroen van Wolffelaar wrote: On Sat, Feb 10, 2007 at 11:13:11AM +0100, Jeroen van Wolffelaar wrote: An option, therefore, is to have a pdns uploaded without the bind backend, and a NEWS.Debian stating that sorry, no bind backend available, because it's not

Bug#406465: [bind backend] TXT record parsing overflow with special characters

2007-02-16 Thread Christoph Haas
Update: upstream says it's not a serious security issue in his opinion. He intends to release a fix this weekend anyway. Christoph -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#406465: [bind backend] TXT record parsing overflow with special characters

2007-02-10 Thread Jeroen van Wolffelaar
On Sat, Feb 10, 2007 at 01:09:19AM +0100, Moritz Muehlenhoff wrote: Jeroen van Wolffelaar wrote: Package: pdns-server Version: 2.9.20-7 Severity: serious Tags: security (serious because what I see looks like a buffer overflow, however, I didn't look into the code yet, so I make no

Bug#406465: [bind backend] TXT record parsing overflow with special characters

2007-02-09 Thread Moritz Muehlenhoff
Jeroen van Wolffelaar wrote: Package: pdns-server Version: 2.9.20-7 Severity: serious Tags: security (serious because what I see looks like a buffer overflow, however, I didn't look into the code yet, so I make no claims as to whether this is exploitable) Despite having a team in the

Bug#406465: [bind backend] TXT record parsing overflow with special characters

2007-01-11 Thread Jeroen van Wolffelaar
Package: pdns-server Version: 2.9.20-7 Severity: serious Tags: security (serious because what I see looks like a buffer overflow, however, I didn't look into the code yet, so I make no claims as to whether this is exploitable) Having a TXT record in a bind-backend zone file that contains a