Vulnerability Bulletins

DSA-3910 knot - security update

   
Affected software Debian
 
Clément Berthaux from Synaktiv discovered a signature forgery vulnerability inknot, an authoritative-only DNS server. This vulnerability allows an attackerto bypass TSIG authentication by sending crafted DNS packets to a server.

More info:

https://www.debian.org/security/2017/dsa-3910