Lähettäjä: intrigeri Päiväys: Vastaanottaja: The Tails public development discussion list Aihe: Re: [Tails-dev] Is Tails affected by the CVE-2015-7547 glibc
getaddrinfo() vulnerability?
Hi,
my understanding is that clients that use Tor SOCKS port for name
resolution are fine.
For clients who use the DNSPort, it's not clear to me if an
attacker-controlled payload can make it's way from the exit node being
used for the name resolution to the client. Has anyone looked
into this?