HomeSolus

Update to 1.13.0 to address CVE-2017-1000381

Authored by sunnyflunk on Jun 20 2017, 6:20 AM.

Description

Update to 1.13.0 to address CVE-2017-1000381

The c-ares function ares_parse_naptr_reply(), which is used for parsing
NAPTR responses, could be triggered to read memory outside of the given input
buffer if the passed in DNS response packet was crafted in a particular way.

Signed-off-by: Peter O'Connor <peter@solus-project.com>

Details

Committed
sunnyflunkJun 20 2017, 6:21 AM
Pushed
sunnyflunkJun 20 2017, 6:21 AM
Parents
R491:5e85212bdbdf: Update to 1.12.0 to address CVE-2016-5180
Branches
Unknown
Tags
Unknown
References
tag: c-ares-1.13.0-3