[Bug network/34033] resolv/ns_print.c: ns_sprintrrf TSIG path bypasses buflen and can overflow caller buffer

carlos at redhat dot com via Glibc-bugs <[email protected]> Fri, 19 Jun 2026 20:41:20 +0000
Newsgroups gmane.comp.lib.glibc.bugs
Message-ID <[email protected]/bugzilla/>
https://sourceware.org/bugzilla/show_bug.cgi?id=34033

--- Comment #9 from Carlos O'Donell <carlos at redhat dot com> ---
Updated the CVE record with vulnerable versions from 2.0.1 to 2.43. We never
released a 1.90 other than experimental for testing. While 2.0.1 was also
experimental it was released on the official distribution channels to I
reference it in the advisory and data.

-- 
You are receiving this mail because:
You are on the CC list for the bug.