From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on dcvr.yhbt.net X-Spam-Level: X-Spam-ASN: AS31976 209.132.180.0/23 X-Spam-Status: No, score=-4.2 required=3.0 tests=AWL,BAYES_00,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,HEADER_FROM_DIFFERENT_DOMAINS, MAILING_LIST_MULTI,RCVD_IN_DNSWL_MED,SPF_HELO_PASS,SPF_PASS shortcircuit=no autolearn=ham autolearn_force=no version=3.4.2 Received: from sourceware.org (server1.sourceware.org [209.132.180.131]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by dcvr.yhbt.net (Postfix) with ESMTPS id 116AD1F454 for ; Sat, 19 Jan 2019 16:14:38 +0000 (UTC) DomainKey-Signature: a=rsa-sha1; c=nofws; d=sourceware.org; h=list-id :list-unsubscribe:list-subscribe:list-archive:list-post :list-help:sender:subject:to:references:from:message-id:date :mime-version:in-reply-to:content-type :content-transfer-encoding; q=dns; s=default; b=l1+QhSMXLEOFvWKJ q6JqnYq17F5AYRxbYLF3nGaAu43Bs7T8dEQSrI7c+7unGXGdhClwwFq0x7aEk06z 42EPq4h9MS014nWbX6ugzNHR1R67FRaApfvUCwMNpvL001vMx/PsveshMKHdNycs 3cMREtiW6sHYG/aqr6x1pCUnsq4= DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=sourceware.org; h=list-id :list-unsubscribe:list-subscribe:list-archive:list-post :list-help:sender:subject:to:references:from:message-id:date :mime-version:in-reply-to:content-type :content-transfer-encoding; s=default; bh=t7i/NiKyRz/aqJhRdbmPsb PsPqE=; b=gNM7a1DHs7NNRfhu4qA6Kiymey1jQ9Y9Wd3Deu/Z1xvtkBx2n4CcLq rGEA5UOQjmdPbpZTQJVYpsR6UaJ2lLMfHgm825TY8rkTOCBqhw95ut3p+srHTdek ntCFneBLG3MfuGRY8WjrRJkD8st0YauRL6VmKGJRv2tKAVdQdHSSM= Received: (qmail 81669 invoked by alias); 19 Jan 2019 16:14:35 -0000 Mailing-List: contact libc-alpha-help@sourceware.org; run by ezmlm Precedence: bulk List-Id: List-Unsubscribe: List-Subscribe: List-Archive: List-Post: List-Help: , Sender: libc-alpha-owner@sourceware.org Received: (qmail 81659 invoked by uid 89); 19 Jan 2019 16:14:34 -0000 Authentication-Results: sourceware.org; auth=none X-HELO: lavender.maple.relay.mailchannels.net X-Sender-Id: dreamhost|x-authsender|siddhesh@gotplt.org X-Sender-Id: dreamhost|x-authsender|siddhesh@gotplt.org X-MC-Relay: Neutral X-MailChannels-SenderId: dreamhost|x-authsender|siddhesh@gotplt.org X-MailChannels-Auth-Id: dreamhost X-Scare-Print: 4954e19620a61313_1547914470217_3618915623 X-MC-Loop-Signature: 1547914470217:1265094815 X-MC-Ingress-Time: 1547914470200 DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=gotplt.org; h=subject:to :references:from:message-id:date:mime-version:in-reply-to :content-type:content-transfer-encoding; s=gotplt.org; bh=t7i/Ni KyRz/aqJhRdbmPsbPsPqE=; b=u4jTeSltpyLXLJmuinjau8kpjwufDLt3dJyeGZ z5VpbYmLGWTKIVs6J2iJaGtdL3gTMcd/lMQfhflhe+drxgqQjhXDQ+BU29vBrMl5 mbeLGtcByEvqBr0OKy+V41ln4HgfCG3AyZDhqeLLgG0MIW20A7UUuQuD6R20PtK+ 0aTyU= Subject: Re: [PATCH] resolv: Reject trailing characters in host names [BZ #20018] To: Florian Weimer , libc-alpha@sourceware.org References: <87y37hk9m6.fsf@oldenburg2.str.redhat.com> X-DH-BACKEND: pdx1-sub0-mail-a75 From: Siddhesh Poyarekar Message-ID: <3edd9620-bedb-0d2e-c9c2-8b811141eeb4@gotplt.org> Date: Sat, 19 Jan 2019 21:44:09 +0530 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:60.0) Gecko/20100101 Thunderbird/60.3.1 MIME-Version: 1.0 In-Reply-To: <87y37hk9m6.fsf@oldenburg2.str.redhat.com> Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable X-VR-OUT-STATUS: OK X-VR-OUT-SCORE: -100 X-VR-OUT-SPAMCAUSE: gggruggvucftvghtrhhoucdtuddrgedtledrhedvgdekiecutefuodetggdotefrodftvfcurfhrohhfihhlvgemucggtfgfnhhsuhgsshgtrhhisggvpdfftffgtefojffquffvnecuuegrihhlohhuthemuceftddtnecusecvtfgvtghiphhivghnthhsucdlqddutddtmdenucfjughrpefuvfhfhffkffgfgggjtgfgsehtqhertddtfeejnecuhfhrohhmpefuihguughhvghshhcurfhohigrrhgvkhgrrhcuoehsihguughhvghshhesghhothhplhhtrdhorhhgqeenucfkphepuddvfedrvdehvddrvddtvddrudejvdenucfrrghrrghmpehmohguvgepshhmthhppdhhvghloheplgduledvrdduieekrdehrdduudelngdpihhnvghtpeduvdefrddvhedvrddvtddvrddujedvpdhrvghtuhhrnhdqphgrthhhpefuihguughhvghshhcurfhohigrrhgvkhgrrhcuoehsihguughhvghshhesghhothhplhhtrdhorhhgqedpmhgrihhlfhhrohhmpehsihguughhvghshhesghhothhplhhtrdhorhhgpdhnrhgtphhtthhopehffigvihhmvghrsehrvgguhhgrthdrtghomhenucevlhhushhtvghrufhiiigvpedt On 19/01/19 1:43 AM, Florian Weimer wrote: > This is the main patch. I kept postponing it because it's a bit > involved despite how little actually changes in behavior. 8-/ >=20 > Siddhesh, do you want this in 2.29? I will have to request a CVE ID fo= r > this, I think, and it would be nice to report the first fixed release t= o > MITRE. >=20 > (This needs the other two resolv patches I posted today.) I'll let this through since this is a security fix; we would have had this backported right after the release anyway. I've looked at all three patches and the changes look fine to me with more details in the git commit message; the second patch for example only mentions that it's a precursor to this bug fix and nothing else. Thanks, Siddhesh