=================================================================== RCS file: /cvsrepo/anoncvs/cvs/www/errata62.html,v retrieving revision 1.6 retrieving revision 1.7 diff -u -r1.6 -r1.7 --- www/errata62.html 2018/02/02 22:43:05 1.6 +++ www/errata62.html 2018/02/07 20:41:46 1.7 @@ -173,6 +173,20 @@ A source code patch exists which remedies this problem.

+

  • + +008: SECURITY FIX: February 7, 2018All architectures +
    +A flaw was found in the way unbound validated wildcard-synthesized +NSEC records. An improperly validated wildcard NSEC record could be +used to prove the non-existence (NXDOMAIN answer) of an existing +wildcard record, or trick unbound into accepting a NODATA proof. +
    + +A source code patch exists which remedies this problem. +

    +