<!DOCTYPE html>
<html>
<head>
<meta http-equiv="content-type" content="text/html; charset=UTF-8">
</head>
<body>
<p>Dear all,</p>
<p>I am pleased to announce the 1.56 release of <a class="moz-txt-link-freetext" href="Net::DNS">Net::DNS</a>.</p>
<p>This release has one regular bugfix, two fixes for LLM discovered
security issues, and one last minute documentation fix:</p>
<ul>
<li moz-do-not-send="true"
href="https://rt.cpan.org/Ticket/Display.html?id=179692">Fix the
backtick removal fix from 1.55 (See <a
href="https://rt.cpan.org/Ticket/Display.html?id=179692">RT#179692</a>)</li>
<li>Fix of remote execution injection via EDNS EXTENDED ERROR (See
<a href="https://rt.cpan.org/Ticket/Display.html?id=179945"
moz-do-not-send="true">RT#179945</a>)</li>
<li>Fix of denial of service via long DNS compression chains (See
<a href="https://rt.cpan.org/Ticket/Display.html?id=179946">RT#179946</a>)</li>
<li>Fix that <a class="moz-txt-link-freetext" href="Net::DNS::RR::RRSIG::verify()">Net::DNS::RR::RRSIG::verify()</a> mentions <code>DNSKEY</code>
and not <code>KEYRR</code> (See <a
href="https://rt.cpan.org/Ticket/Display.html?id=180088">RT#180088</a>)</li>
</ul>
<div class="md-table fullscreen-table-wrapper --editable"
data-table-index="0">
<div class="fullscreen-table-wrapper__buttons"></div>
<table>
<thead>
</thead>
<tbody>
<tr>
<td>link</td>
<td><a
href="https://www.net-dns.org/download/Net-DNS-1.56.tar.gz">https://www.net-dns.org/download/Net-DNS-1.55_01.tar.gz</a></td>
</tr>
<tr>
<td>sha256</td>
<td>5930e39f76895b380c7ca11fc08352d15ad71c41fe84c12dfb6a322d17f66946</td>
</tr>
<tr>
<td>asc</td>
<td><a
href="https://www.net-dns.org/download/Net-DNS-1.56.tar.gz.asc">https://www.net-dns.org/download/Net-DNS-1.55_01.tar.gz.asc</a></td>
</tr>
</tbody>
</table>
</div>
<h3>Changes</h3>
<pre class="codeblock-buttons"><div class="codeblock-button-wrapper"
style="right: 0px;"></div><code class="hljs language-ruby"
data-highlighted="yes">**** <span class="hljs-number">1.56</span> [unreleased]
<span class="hljs-title class_">Fix</span> rt.cpan.org <span
class="hljs-comment">#180088</span>
<span class="hljs-title class_">Documentation</span> issue <span
class="hljs-keyword">for</span> <span class="hljs-title class_">Net</span><span
class="hljs-symbol">:</span><span class="hljs-symbol">:DNS</span><span
class="hljs-symbol">:</span><span class="hljs-symbol">:RR</span><span
class="hljs-symbol">:</span><span class="hljs-symbol">:RRSIG</span><span
class="hljs-symbol">:</span><span class="hljs-symbol">:verify</span>()
<span class="hljs-title class_">Fix</span> rt.cpan.org <span
class="hljs-comment">#179946</span>
<span class="hljs-title class_">Denial</span> of <span
class="hljs-title class_">Service</span> via long <span
class="hljs-variable constant_">DNS</span> compression chains
<span class="hljs-title class_">Fix</span> rt.cpan.org <span
class="hljs-comment">#179945</span>
<span class="hljs-title class_">Remote</span> code injection via <span
class="hljs-variable constant_">EDNS</span> <span
class="hljs-variable constant_">EXTENDED</span> <span
class="hljs-variable constant_">ERROR</span>
<span class="hljs-title class_">Fix</span> rt.cpan.org <span
class="hljs-comment">#179692/#176900</span>
<span class="hljs-variable constant_">UNIX</span>.<span
class="hljs-symbol">pm:</span> <span class="hljs-title class_">Unreachable</span> code warning using <span
class="hljs-title class_">Apache</span>/mod_perl</code></pre>
<p><br>
</p>
</body>
</html>