Comment 7 for bug 314776

Revision history for this message
Jamie Strandboge (jdstrand) wrote :

bind9 (1:9.5.0.dfsg.P2-5ubuntu1) jaunty; urgency=low

  * SECURITY UPDATE: clients treat malformed signatures as good when verifying
    server DSA and ECDSA certificates.
    - update lib/dns/openssldsa_link.c to properly check the return code of
      DSA_do_verify()
    - CVE-2009-0025