diff --git a/CHANGES b/CHANGES index 790d28111d..2f43c993cc 100644 --- a/CHANGES +++ b/CHANGES @@ -182,7 +182,8 @@ 5111. [bug] Occluded DNSKEY records could make it into the delegating NSEC/NSEC3 bitmap. [GL #742] -5110. [placeholder] +5110. [security] Named leaked memory if there were multiple Key Tag + EDNS options present. (CVE-2018-5744) [GL #772] 5109. [cleanup] Remove support for RSAMD5 algorithm. [GL #628] diff --git a/doc/arm/notes.xml b/doc/arm/notes.xml index e7ebbd0fb2..79256ea5c1 100644 --- a/doc/arm/notes.xml +++ b/doc/arm/notes.xml @@ -148,6 +148,15 @@ by BIND 9. This flaw is disclosed in CVE-2018-5745. [GL #780] + + + named leaked memory when processing a + request with multiple Key Tag EDNS options present. ISC + would like to thank Toshifumi Sakaguchi for bringing this + to our attention. This flaw is disclosed in CVE-2018-5744. + [GL #772] + +