[Bug network/34033] resolv/ns_print.c: ns_sprintrrf TSIG path bypasses buflen and can overflow caller buffer
carlos at redhat dot com via Glibc-bugs <[email protected]> Fri, 19 Jun 2026 20:41:20 +0000
| Newsgroups | gmane.comp.lib.glibc.bugs |
|---|---|
| Message-ID | <[email protected]/bugzilla/> |
https://sourceware.org/bugzilla/show_bug.cgi?id=34033 --- Comment #9 from Carlos O'Donell <carlos at redhat dot com> --- Updated the CVE record with vulnerable versions from 2.0.1 to 2.43. We never released a 1.90 other than experimental for testing. While 2.0.1 was also experimental it was released on the official distribution channels to I reference it in the advisory and data. -- You are receiving this mail because: You are on the CC list for the bug.