- Solution: Upgrade to any of the non-affected versions
- Workaround: Run your Recursor under a supervisor. Exposure can be
limited by configuring the
- |allow-from|_ setting so
+ :ref:`setting-allow-from` setting so
only trusted users can query your nameserver. There is no workaround
for the Authoritative server.
-.. |allow-from| replace:: ``allow-from``
-.. _allow-from: :ref:`setting-allow-from`
-
A bug was discovered in our label decompression code, making it possible
for names to refer to themselves, thus causing a loop during
decompression. On some platforms, this bug can be abused to cause