Does 9.9.2-P2 support rate-limit configuration?

Vernon Schryver vjs at rhyolite.com
Mon Apr 1 21:06:13 UTC 2013


> From: Red Cricket <red.cricket.blog at gmail.com>

> Does 9.9.2-P2 (the recent release that fixes
> CVE-2013-2266: A Maliciously Crafted Regular Expression Can Cause Memory
> Exhaustion in named)
> support rate-limit ?

not without patching.

>                      If not is there a way to patch the source code to
> allow for rate-limiting?

Yes, there are 12 more patches for 9.9.2-P2 and 9.8.4-P2 in the usual place.
That place can be found by following the link labeled "Patch files for BIND9"
on http://www.redbarn.org/dns/ratelimits 

Two of the new patches are copies with names that includd the version
string for the FreeBSD ports.


Vernon Schryver    vjs at rhyolite.com



More information about the bind-users mailing list