Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Fedora 25: 2017-92643d70b7 Critical: knot-resolver DoS Mitigation

fedora
Calendar Grey July 20, 2017
Dist Fedora Esm H88
The latest security patch for Knot Resolver in Fedora moves it to version 1.3.1, fixing various vulnerabilities and boosting its overall performance.
Update to upstream version 1.3.1.

Summary

The Knot DNS Resolver is a caching full resolver implementation written in C

and LuaJIT, including both a resolver library and a daemon. Modular

architecture of the library keeps the core tiny and efficient, and provides

a state-machine like API for extensions.

The package is pre-configured as local caching resolver.

To start using it, just start the local DNS socket:

BEWARE:

Because of https://bugzilla.redhat.com/show_bug.cgi?id=1366968

you need to switch your system to SELinux permissive mode.

Update to upstream version 1.3.1.

su -c 'dnf upgrade knot-resolver' at the command line.

For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 25
Version: 1.3.1
Release: 1.fc25
Summary: Caching full DNS Resolver

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here