CVE-2023-46317: Knot Resolver before 5.7.0 performs many TCP reconnections upon receiving certain nonsensical responses from servers. Please stabilize 5.7.0.
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=f94aa3d33429bf55f0e948af14b719d160e8b2af commit f94aa3d33429bf55f0e948af14b719d160e8b2af Author: Matthew Smith <matthew@gentoo.org> AuthorDate: 2023-11-27 08:35:28 +0000 Commit: Matthew Smith <matthew@gentoo.org> CommitDate: 2023-11-27 08:35:28 +0000 net-dns/knot-resolver: drop vulnerable 5.6.0, 5.6.0-r1, 5.6.0-r2 Bug: https://bugs.gentoo.org/918587 Signed-off-by: Matthew Smith <matthew@gentoo.org> net-dns/knot-resolver/Manifest | 2 - net-dns/knot-resolver/files/kresd.confd | 5 -- net-dns/knot-resolver/files/kresd.initd | 23 ------ .../knot-resolver/knot-resolver-5.6.0-r1.ebuild | 96 ---------------------- .../knot-resolver/knot-resolver-5.6.0-r2.ebuild | 96 ---------------------- net-dns/knot-resolver/knot-resolver-5.6.0.ebuild | 93 --------------------- 6 files changed, 315 deletions(-)