]> git.ipfire.org Git - thirdparty/systemd.git/commit
network: limit the total number of Encrypted DNS options processed
authorRonan Pigott <ronan@rjp.ie>
Tue, 5 Nov 2024 03:45:27 +0000 (20:45 -0700)
committerLennart Poettering <lennart@poettering.net>
Tue, 5 Nov 2024 08:33:35 +0000 (09:33 +0100)
commita791fea0d682cb2eb0555fdb32b340fecb042796
tree8e8aaf2a5bda8f06201d5fdbc742427a83ab4bf1
parent1da80d2ca34985308090a2a47b9a2513bae66ca6
network: limit the total number of Encrypted DNS options processed

We need a sensible limit on the number of Encrypted DNS options allowed
so that the set of resolvers per link does not grow without bound.

Fixes: 0c90d1d2f243 ("ndisc: Parse RFC9463 encrypted DNS (DNR) option")
src/network/networkd-ndisc.c