]> git.ipfire.org Git - thirdparty/bind9.git/shortlog
thirdparty/bind9.git
2026-07-13  Mark AndrewsAdd DNS_NAME_QUOTED flag for dns_name_totext()
2026-07-13  Evan Huntfix: usr: Ensure NSEC authority does not cross zonecut...
2026-07-13  Alessio PoddaAdd a system test for the grandparent NSEC downgrade
2026-07-13  Evan HuntEnsure NSEC authority does not cross zonecut boundary
2026-07-13  Ondřej Surýchg: dev: Pass the work callback result to the done...
2026-07-13  Michał KępieńUpdate BIND version for release v9.21.24
2026-07-13  Michał Kępieńnew: doc: Prepare documentation for BIND 9.21.24
2026-07-13  Michał KępieńReorder release notes
2026-07-13  Michał KępieńAdd release note for CVE-2026-11622
2026-07-13  Michał KępieńTweak and reword release notes
2026-07-13  Michał KępieńPrepare release notes for BIND 9.21.24
2026-07-13  Michał KępieńGenerate changelog for BIND 9.21.24
2026-07-13  Ondřej SurýPass the work callback result to the done callback
2026-07-12  Ondřej Surýfix: usr: Prevent aborts during expired cache dumps
2026-07-12  Ondřej SurýTest expired qpcache iteration after deletion
2026-07-12  Ondřej SurýSkip non-existent qpcache headers in iterators
2026-07-10  Nicki Křížekchg: test: Replace prereq.sh files with isctest.mark
2026-07-10  Nicki KřížekRemove prereq.sh support from the system test runner
2026-07-10  Nicki KřížekMove the statschannel prereq.sh check to a marker
2026-07-10  Nicki KřížekGate enginepkcs11 with the softhsm2_environment marker
2026-07-10  Nicki KřížekMove the pkcs11-provider prereq.sh check to a marker
2026-07-10  Nicki KřížekMove FIPS-DH prereq.sh checks to a with_fips_dh marker
2026-07-10  Nicki KřížekMove gssapi prereq.sh checks to a with_gssapi marker
2026-07-10  Nicki KřížekMove the cpu prereq.sh check to a with_cpu_affinity...
2026-07-10  Nicki KřížekMove the eddsa prereq.sh check to a with_eddsa marker
2026-07-10  Nicki KřížekMove TSAN prereq.sh checks to a without_tsan marker
2026-07-10  Nicki KřížekMove the geoip2 prereq.sh check to a with_geoip2 marker
2026-07-10  Nicki KřížekMove libnghttp2 prereq.sh checks to a with_libnghttp2...
2026-07-10  Nicki KřížekMove Perl-module prereq.sh checks to pytest markers
2026-07-10  Nicki KřížekRemove obsolete Perl module prereq.sh files
2026-07-10  Ondřej Surýfix: usr: Negative caching stopped working with stale...
2026-07-10  Ondřej SurýTest that a fresh negative cache entry is not refreshed
2026-07-10  Ondřej SurýOnly refresh negative cache entries that are actually...
2026-07-10  Michał Kępieńchg: doc: Set up version for BIND 9.21.25
2026-07-10  Michał KępieńUpdate BIND version to 9.21.25-dev
2026-07-10  Nicki Křížekfix: test: Fix the dnssec_py test marks
2026-07-10  Matthijs Mekking[CVE-2026-13204] fix: usr: Prevent crash from malformed...
2026-07-10  Nicki KřížekFix the dnssec_py test marks
2026-07-10  Aydın Mercan[CVE-2026-13321] sec: usr: Fix DNSSEC validation bypass...
2026-07-10  Evan Huntdns_rdataset_addnoqname() could find unsigned NSEC...
2026-07-10  Evan Hunt[CVE-2026-10723] sec: usr: Correct verification of...
2026-07-10  Aydın Mercanchange dns_nsec_requiredtypespresent to dns_nsec_is_legal
2026-07-10  Evan HuntMove the dnssec_findnoqname_mismatch test into dnssec_py
2026-07-10  Ondřej Surýfix: dev: Avoid needless queries when the DNSSEC valid...
2026-07-10  Matthijs MekkingUpdate reproducer #5874
2026-07-10  Aydın MercanReject out-of-zone NSEC next owner names
2026-07-10  Matthijs MekkingUpdate reproducer #5985
2026-07-10  Ondřej Surýsec: usr: Reclaim memory promptly when DNSSEC validatio...
2026-07-10  Ondřej SurýMake the per-fetch validation quota terminal in sub...
2026-07-10  Alessio PoddaReproducer for #5874 NSEC3 impersonation
2026-07-10  Aydın MercanAdd system test for out-of-zone nsec dnssec bypass
2026-07-10  Alessio PoddaReproducer for #5985 addnoqname mismatch
2026-07-10  Colin Vidalchg: dev: Follow-up of disambiguate `query_cname()...
2026-07-10  Ondřej SurýCancel the offloaded verification job when canceling...
2026-07-10  Evan HuntCheck NSEC3 signer matches the owning zone
2026-07-10  Mark Andrewsfix: nil: Add missing dumpnode call in dnssec-signzone
2026-07-10  Colin VidalConvert some chain shell-based system tests in python
2026-07-10  Colin Vidalchg: dev: Disambiguate `query_cname()` and `query_dname...
2026-07-10  Mark AndrewsTest dnssec-signzone -D and out-of-zone records
2026-07-10  Colin VidalFollow-up of disambiguate `query_cname()` and `query_dn...
2026-07-10  Ondřej Surý[CVE-2026-11605] sec: usr: Prevent excessive validation...
2026-07-10  Colin VidalDisambiguate `query_cname()` and `query_dname()` usage
2026-07-10  Mark AndrewsAdd missing dumpnode call in dnssec-signzone
2026-07-10  Mark Andrews[CVE-2026-11721] sec: usr: Invalid signed wildcard...
2026-07-10  Ondřej SurýCover excessive NSEC3 proofs
2026-07-10  Mark Andrews[CVE-2026-10822] sec: usr: Malformed DNSKEY records...
2026-07-10  Nicki KřížekAdd dnssec_py/tests_rrsig_labels_signer: reject Labels...
2026-07-10  Ondřej SurýLimit DNSSEC denial proof validation per fetch
2026-07-10  Mark Andrews[CVE-2026-11331] sec: usr: Fix handling of rpz CNAME...
2026-07-10  Mark AndrewsPOC for PRIVATEDNS DNSKEY overrun not being detected
2026-07-10  Mark AndrewsTest RRSIG record parsing
2026-07-10  Mark AndrewsProperly handle rpz name to long wildcard expansion
2026-07-10  Mark AndrewsTest dst_algorithm_fromdata
2026-07-10  Mark AndrewsInvalid signed wildcard records were being accepted
2026-07-10  Mark AndrewsCheck rpz name too long wildcard CNAME expansion handling
2026-07-10  Mark AndrewsCheck that a short PRIVATEDNS record is rejected
2026-07-10  Mark AndrewsDon't sign out of zone records in dnssec-signzone
2026-07-10  Mark AndrewsFix TTL extraction from A/AAAA record
2026-07-10  Mark AndrewsMake it clearer that decompression is not allowed here
2026-07-10  Mark AndrewsFix dns_name_fromwire to honour the active region
2026-07-10  Mark AndrewsFix dst_algorithm_fromdata to set the active range
2026-07-10  Mark AndrewsFix the yaml query zone name code in dnstap-read
2026-07-10  Mark AndrewsFix EDNS Report Channel checking code
2026-07-10  Mark AndrewsCheck that dns_name_fromwire honours the active region
2026-07-09  Ondřej Surýfix: dev: Print the full OID in PRIVATEOID key comments
2026-07-09  Ondřej SurýPrint the full OID in PRIVATEOID key comments
2026-07-09  Ondřej Surýfix: dev: Fix a crash when resolving names below a...
2026-07-09  Ondřej SurýReference-count the DNAME zonecut headers
2026-07-09  Ondřej Surýchg: dev: Support larger DNSSEC keys and signatures 6198-isc_buffer_reserve-wraps-near-uint_max
2026-07-09  Ondřej SurýRemove the fixed DST_KEY_MAXSIZE limit from key parsing...
2026-07-09  Ondřej SurýSize RRSIG rdata buffers by the maximum rdata length
2026-07-09  Ondřej SurýSize DNSKEY rdata buffers by the maximum rdata length
2026-07-08  Matthijs Mekkingfix: usr: Don't synthesize negative responses with...
2026-07-08  Ondřej SurýCover exact-name NODATA synthesis from a pending NSEC
2026-07-08  Evan HuntMerge NSEC synthesis tests
2026-07-08  Alessio PoddaReproducer for #5887 out of zone NSEC-next syntheisis
2026-07-08  Alessio PoddaReproducer for #5872 cache pending synthesis
2026-07-08  Alessio PoddaReproducer for #5977 cache poison NSEC piggyback
2026-07-08  Evan HuntDon't synthesize negative responses with pending NSEC
2026-07-08  Colin Vidalfix: dev: Detect UTF-16 surrogates in `isc_utf8_valid()`
next