Unbound RPZ parsing limits (1.13.1-1)

Mark Abram marek.w.abram at gmail.com
Sat Apr 24 01:38:35 UTC 2021


      
I have discovered that some long character domain names in RPZ file is causing Unbound to crash.
  
​
  
​Apr 23 18:35:55 unbound: [21240:0] error: parse error /zones/rpz.oisd.zone 1602:256: Domainname length overflow
  
Apr 23 18:35:55 unbound: [21240:0] error: error parsing zonefile /zones/rpz.oisd.zone for rpz.oisd.zone.
  
Apr 23 18:35:55 unbound: [21240:0] fatal error: auth_zones could not be setup
  
Apr 23 18:36:07 unbound: [21278:0] error: parse error /zones/rpz.oisd.zone 1602:256: Domainname length overflow
  
Apr 23 18:36:07 unbound: [21278:0] error: error parsing zonefile /zones/rpz.oisd.zone for rpz.oisd.zone.
  
Apr 23 18:36:07 unbound: [21278:0] fatal error: auth_zones could not be setup
  
​
  
​
  
​Domain example;
  
​
  
​11exe.yourcomputerhaveaseriousproblemcallon18662968997exe.yourcomputerhaveaseriousproblemcallon18662968997exe.yourcomputerhaveaseriousproblemcallon18662968997exe.yourcomputerhaveaseriousproblemcallon18662968997calltollfreenow.playnewgamesonline.com CNAME .
  
  
​If you perform DIG on this domain it is valid and comes back NOERROR
  
​
  
​Mark
  

     
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.nlnetlabs.nl/pipermail/unbound-users/attachments/20210423/9db2fa12/attachment.htm>


More information about the Unbound-users mailing list