[knot-dns-users] Knot DNS 2.5.2 and 2.4.5 releases
daniel.salzman at nic.cz
Fri Jun 23 14:08:56 CEST 2017
Hello Knot DNS users,
CZ.NIC has released Knot DNS 2.5.2 and Knot DNS 2.4.5. Beside several fixes and improvements,
these versions fix a flaw within the TSIG protocol implementation that would allow an attacker
with a valid key name and algorithm to bypass the TSIG authentication if no additional ACL
restrictions is set. This vulnerability was discovered by security experts from Synacktiv.
Special thanks to them!
Documentation and migration notes:
More information about the knot-dns-users