Re: [DSA 1605-1] DNS vulnerability impact on the libc stub resolver

Quoting Vincent Deffontaines (vincent@gryzor.com):

> No I confirm NAT source port randomization was included in 2.6.21 as far
> as Netfilter NAT is concerned.
> Commit is :
> http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=41f4689a7c8cd76b77864461b3c58fde8f322b2c
> The 2.6.24 commit is Linux network stack, not Netfilter.

As I said in our brief off-list side discussion, my apologies for having
been too tired at the moment I posted my comment about 2.6.24.  (It was

