[net-dns-users] Release candidate for Net::DNS 1.56
Willem Toorop
willem at nlnetlabs.nl
Sat Jul 11 14:28:20 UTC 2026
Dear all,
We have a candidate for the upcoming 1.56 release of Net::DNS.
This candidate has one regular bugfixes, and two fixes for LLM
discovered security issues:
* Fix the backtick removal fix from 1.55 (See RT#179692
<https://rt.cpan.org/Ticket/Display.html?id=179692>)
* Fix of remote execution injection via EDNS EXTENDED ERROR (See
RT#179945 <https://rt.cpan.org/Ticket/Display.html?id=179945>)
* Fix of denial of service via long DNS compression chains (See
RT#179946 <https://rt.cpan.org/Ticket/Display.html?id=179946>)
Please review the candidate carefully. If no issues arise, the actual
releases will follow Saturday the 18th of June 2026.
link https://www.net-dns.org/download/Net-DNS-1.55_01.tar.gz
sha256 eca7ef258d654446d6fb0aa848a409e33de9595a3b94a88f0a0c066b6390c855
asc https://www.net-dns.org/download/Net-DNS-1.55_01.tar.gz.asc
Regression test results will follow coming Monday the 13th of July
Changes
|**** 1.56 [unreleased] Fix rt.cpan.org #179946 Denial of Service via
long DNS compression chains Fix rt.cpan.org #179945 Remote code
injection via EDNS EXTENDED ERROR Fix rt.cpan.org #179692/#176900
UNIX.pm: Unreachable code warning using Apache/mod_perl |
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.nlnetlabs.nl/pipermail/net-dns-users/attachments/20260711/55b19d09/attachment.htm>
More information about the net-dns-users
mailing list