BIND 9.7.3 Release Notes (5900-2505, October 2012)

QXCR1000893386 The return values from the OpenSSL library functions are not checked properly
in DNS code.
QXCR1000924015 "DNSSEC Lookaside Validation (DLV) processing does not handle unknown
signature algorithms correctly."
QXCR1000841386 "The local IPv6 unicast addresses, such as fd00:: /7, are forwarded to the
root server for resolution."
QXCR1000821672 Forgery resilience needs more improvements.
QXCR1000577501 The rndc(1) recursing output file named.recursing contains old data.
QXCR1000791343 named(1M) fails with an out of memory error message.
JAGag45362 Query ID generation is cryptographically weak.
JAGag32951 named(1M) does not handle queries of type ANY properly.
JAGag32950 named (1M) unexpectedly aborts under certain circumstances.
QXCR1001231524 Handling of zero length rdata cause named to terminate unexpectedly in
BIND9.7.3
QXCR1001230666 Heavy DNSSEC Validation Load Can Cause an Assertion Failure in BIND9.7
QXCR1001241557 RDATA in excess of 65535 bytes cause named to exit in BIND 9.7.3
New deliverables in BIND 9.7.3 and their locations
The following binaries have been added newly in BIND 9.7.3. Please refer to the individual
manpages for more information.
Binaries
/usr/sbin:
dnssec-dsfromkey
dnssec-revoke
dnssec-settime
arpaname
named-journalprint
nsec3hash
genrandom
isc-hmac-fixup
ddns-confgen
New deliverables in BIND 9.7.3 and their locations 17