- Fix CVE-2026-42923, Degradation of service with unbounded NSEC3
hash calculations. Thanks to Qifan Zhang, Palo Alto Networks, for
the report.
+ - Fix CVE-2026-42960, Possible cache poisoning attack while following
+ delegation. Thanks to TaoFei Guo from Peking University, Yang Luo
+ and JianJun Chen, Tsinghua University, for the report.
23 April 2026: Wouter
- Merge #1441: Fix buffer overrun in
rrset->rrset_all_next = NULL;
return 1;
}
- mark_additional_rrset(pkt, msg, rrset);
+ /* Only mark glue as allowed for type NS in the authority
+ * section. Other RR types do not get glue for them, it
+ * is allowed from the answer section, but not authority
+ * so that a message can not have address records cached
+ * as a side effect to the query. */
+ if(rrset->type==LDNS_RR_TYPE_NS)
+ mark_additional_rrset(pkt, msg, rrset);
prev = rrset;
rrset = rrset->rrset_all_next;
}