From: Evan Hunt Date: Tue, 24 Jan 2017 04:05:13 +0000 (-0800) Subject: [v9_9] expand relnote X-Git-Tag: v9.9.10rc1~38 X-Git-Url: http://git.ipfire.org/gitweb/?a=commitdiff_plain;h=4474e3aca75b3fd43827f3ed47e6dce4b230140e;p=thirdparty%2Fbind9.git [v9_9] expand relnote (cherry picked from commit afa0ff0cbb75f4ce20d082eb3cb30ea6b2840920) --- diff --git a/doc/arm/notes.xml b/doc/arm/notes.xml index 15811bfb0eb..682ae3f15fd 100644 --- a/doc/arm/notes.xml +++ b/doc/arm/notes.xml @@ -44,9 +44,11 @@ - Combining dns64 and rpz can result in dereferencing - a NULL pointer (read). This flaw is dislosed in CVE-2017-3135. - [RT#44434] + If a server is configured with a response policy zone (RPZ) + that rewrites an answer with local data, and is also configured + for DNS64 address mapping, a NULL pointer can be read + triggering a server crash. This flaw is disclosed in + CVE-2017-3135. [RT #44434]