Fix remote buffer overflow CERT VU#434904 54/252554/1
authorSeonah Moon <seonah1.moon@samsung.com>
Wed, 27 Jan 2021 08:16:05 +0000 (17:16 +0900)
committerSeonah Moon <seonah1.moon@samsung.com>
Fri, 29 Jan 2021 07:47:15 +0000 (16:47 +0900)
commitdaff897595f2231aa6bd5cc37ecb0f3661b5b87c
treef43f9baf48fcdd67cf55dce413cb6517f0dbe366
parentfa9b094891049a0cdb6c6379e8308cb3a07614ef
Fix remote buffer overflow CERT VU#434904

The problem is in the sort_rrset() function and allows a remote
attacker to overwrite memory. Any dnsmasq instance with DNSSEC
enabled is vulnerable.

Backported for
CVE-2020-25681, CVE-2020-25682, CVE-2020-25683, CVE-2020-25687

Change-Id: If6e31a6418c113c7e390166ea32378eb1d9a5470
CHANGELOG
src/dnssec.c