From 4551c58e30acfdaeaf8677e713581bfb8e07e21d Mon Sep 17 00:00:00 2001 From: Evan Hunt Date: Thu, 3 Jan 2019 11:04:41 -0800 Subject: [PATCH] CHANGES, release note (cherry picked from commit 244e44af432121a05e0a308b7ccce96a8ecd28ab) (cherry picked from commit 79fad84bf6981dfd2a13971d966c0ebee057c448) --- CHANGES | 4 +++- doc/arm/notes.xml | 7 +++++++ 2 files changed, 10 insertions(+), 1 deletion(-) diff --git a/CHANGES b/CHANGES index ae65fd45c8..ce73210f1e 100644 --- a/CHANGES +++ b/CHANGES @@ -53,7 +53,9 @@ 5201. [bug] Fix a possible deadlock in RPZ update code. [GL #973] -5200. [placeholder] +5200. [security] tcp-clients settings could be exceeded in some cases, + which could lead to exhaustion of file descriptors. + (CVE-2018-5743) [GL #615] 5199. [security] In certain configurations, named could crash if nxdomain-redirect was in use and a redirected diff --git a/doc/arm/notes.xml b/doc/arm/notes.xml index ff01aaa38f..18a9cc9c38 100644 --- a/doc/arm/notes.xml +++ b/doc/arm/notes.xml @@ -93,6 +93,13 @@ cache. This flaw is disclosed in CVE-2019-6467. [GL #880] + + + The TCP client quota set using the tcp-clients + option could be exceeded in some cases. This could lead to + exhaustion of file descriptors. (CVE-2018-5743) [GL #615] + +