Commit afcdef32f8 for bind

commit afcdef32f81c5b76a369121e94e938394b1ae70b
Author: Aydın Mercan <aydin@isc.org>
Date:   Tue Sep 22 15:44:28 2026 +0300

    set the in rsa exponent bounds to null after shutdown

    `dst__opensslrsa_shutdown` frees the resources consumed by the BIGNUMs
    used for checking RSA exponent bounds but does not set the pointers to
    `NULL`.

    This is not a real issue since there is no possible codepath that can
    deinitialize and initialize libdns. Nonetheless, set the freed resources
    to NULL for consistency with the rest of the codebase.

diff --git a/lib/dns/opensslrsa_link.c b/lib/dns/opensslrsa_link.c
index 4b4a333d56..67dcc8d8be 100644
--- a/lib/dns/opensslrsa_link.c
+++ b/lib/dns/opensslrsa_link.c
@@ -991,5 +991,8 @@ dst__opensslrsa_shutdown(void) {
 	REQUIRE(rsa_exponent_max != NULL);

 	BN_free(rsa_exponent_min);
+	rsa_exponent_min = NULL;
+
 	BN_free(rsa_exponent_max);
+	rsa_exponent_max = NULL;
 }