REDHAT-BUG-1245241: Low severity openstack designate vulnerability
It was discovered that the Designate component in OpenStack would enter an infinite loop when processing an internal zone file transfer if a managed DNS zone included a resource record set whose size exceeded the limitations of the DNS protocol, leading to a denial of service. Only authenticated users with access to the Designate component can add such resource record sets.
Acknowledgements:
This issue was discovered by Florian Weimer of Red Hat Product Security.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1245241?
The severity of REDHAT-BUG-1245241 is categorized as high due to its denial of service impact.
How do I fix REDHAT-BUG-1245241?
To fix REDHAT-BUG-1245241, update to the latest version of OpenStack Designate that addresses this vulnerability.
What systems are affected by REDHAT-BUG-1245241?
REDHAT-BUG-1245241 affects installations of the OpenStack Designate component.
What causes the issue in REDHAT-BUG-1245241?
The issue in REDHAT-BUG-1245241 is caused by an infinite loop that occurs during processing of an internal zone file transfer with oversized resource record sets.
What is the potential impact of REDHAT-BUG-1245241?
The potential impact of REDHAT-BUG-1245241 is a denial of service, making the affected DNS services unavailable.