TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Fuzzing DNS Zone Parsers

57 pointsby fcambusalmost 6 years ago

3 comments

tptacekalmost 6 years ago
This is a little disturbing; nsd is kind of a big deal, and afl on zone files is a pretty basic test to run. Kudos to the author for doing it, but why haven&#x27;t the authors of nsd done it already, and what else haven&#x27;t they done?<p>There is really no good reason for DNS servers to be written in C anymore.
评论 #20412796 未加载
评论 #20413993 未加载
nlyalmost 6 years ago
Nobody knows how to parse zone files.<p>I fuzzed a few zone file parsers several years ago, but to find the differences between implementations rather than crashes.<p>The problem is the format is really poorly specified, has been refined over about 10 RFCs, and still riddled with ambiguities. Every implementation out there handles things slightly differently.<p>I&#x27;ll just dump some notes I wrote at the time, containing a list of RFCs and some findings, to gist:<p><a href="https:&#x2F;&#x2F;gist.github.com&#x2F;nlyan&#x2F;2a958fa476182e1b07955a945f0d7052" rel="nofollow">https:&#x2F;&#x2F;gist.github.com&#x2F;nlyan&#x2F;2a958fa476182e1b07955a945f0d70...</a>
评论 #20421021 未加载
ifoundthetaoalmost 6 years ago
Excellent! Would you be willing to do a second article on the process you used when wading through the findings?