Re: [security update] net/libcares 1.19.1

2023-05-23 Thread Brad Smith
LGTM. Thanks. On 2023-05-23 3:43 p.m., Volker Schlecht wrote: Cc: Maintainer c-ares released version 1.19.1 yesterday, fixing o CVE-2023-32067. High. 0-byte UDP payload causes Denial of Service [12] o CVE-2023-31147. Moderate. Insufficient randomness in generation of DNS query IDs [13] o CVE-

[security update] net/libcares 1.19.1

2023-05-23 Thread Volker Schlecht
Cc: Maintainer c-ares released version 1.19.1 yesterday, fixing o CVE-2023-32067. High. 0-byte UDP payload causes Denial of Service [12] o CVE-2023-31147. Moderate. Insufficient randomness in generation of DNS query IDs [13] o CVE-2023-31130. Moderate. Buffer Underwrite in ares_inet_net_pton() [