]> git.ipfire.org Git - thirdparty/bind9.git/commitdiff
[CVE-2025-13878] sec: usr: Fix incorrect length checks for BRID and HHIT records
authorNicki Křížek <nicki@isc.org>
Thu, 8 Jan 2026 11:32:38 +0000 (12:32 +0100)
committerNicki Křížek <nicki@isc.org>
Thu, 8 Jan 2026 11:32:38 +0000 (12:32 +0100)
Malformed BRID and HHIT records could trigger an assertion failure. This has been fixed.

ISC would like to thank Vlatko Kosturjak from Marlink Cyber for bringing
this vulnerability to our attention.

Closes isc-projects/bind9#5616

Merge branch '5616-confidential-brid-hhit-towire' into 'v9.21.17-release'

See merge request isc-private/bind9!876


Trivial merge