BIND DNSSEC incorrect checks for malformed signatures
Posted by admin in Unix, tags: bind, dsa, security, upgradeThe DSA_do_verify() function from OpenSSL is used to determine if a
DSA digital signature is valid. When DNSSEC is used within BIND it
uses DSA_do_verify() to verify DSA signatures, but checks the function
return value incorrectly.
How to upgrade it?

Entries (RSS)