[CLSA-2026:1786551486] bind: Fix of CVE-2026-11622
Type:
security
Severity:
Important
Release date:
2026-08-12 16:38:59 UTC
Description:
- CVE-2026-11622: runaway memory usage in a DNSSEC validating resolver under a random subdomain attack; superseded generations of a cached RRset stayed linked while validation kept the node referenced, so the cache grew far past max-cache-size - CVE-2026-11622: also reference-count the DNAME zone cut headers and initialise the counter for headers faulted in from a 'map' file, two gaps the upstream 9.11 fix leaves open
CVEs fixed:
Updated packages:
  • bind-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:3125f4af53348577fcd015c0d138ec624c29a93776d3e38b92cd56f8acb86092
  • bind-chroot-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:86f3d6e407e5a4f3b1e0b0a7a1d8088f1d02660c1253c3eccf036d03b7827773
  • bind-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:709acdbf2431471c90b869ecb28cc62735befa13b0c0d7edea7957801bbdc957
  • bind-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:bc81af15a431a84531c31cc6396cfe31602eb368261a3fbe1d2354fb6497a770
  • bind-export-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:dd22eb2704d97a0e89474e0ffcc075c0b9e72a1e85b7b7f4e6efd3636533a223
  • bind-export-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:99740e93e62b4998e5cfc6b97290e43938c069fc12a14477d35383fe85b9052a
  • bind-export-libs-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:f12da567aad2380c0bcd6454ad99b98e72373ed0c4e65f1296afa72fbf33d60d
  • bind-export-libs-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:6071cecb1a1f3fa94613da669dda3ea8eb26377eb955de8189ceaaefd41117b5
  • bind-libs-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:f7a6dcc8b4aea07d0770a849b1ea2e6a2113ff0a82bc54745f241cd3a276bdd8
  • bind-libs-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:359b9c8d4141cb21ac96cb91a3ea83375f03c2af84572b16cdd679bc264f8b84
  • bind-libs-lite-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:b19fd0168b627e0ea662cecb89d3b7697711de6cbe27ed201807a2a2a4c8255a
  • bind-libs-lite-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:fe58252bc2cfedf8518d13cdb8f9d156971f0b65c889b55b612d74a0c8359f33
  • bind-license-9.11.4-26.P2.el7_9.16.tuxcare.els16.noarch.rpm
    sha:eb3b267763fb8ada7e630260b27c22a026c60ab5375382dc08cd0e36ba1f4204
  • bind-lite-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:93842251d4402c9410033fd5e736cf66d944dd3f484e5dfa9e26da78f6c41865
  • bind-lite-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:dfd23359fd31a2a70a73f49f705f7114f625399258a7692121fe93f25d0b43fb
  • bind-pkcs11-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:f782b3ed515e57c0fa4942f3d4d0d367295d9b763177c482170d0d724db1dc9c
  • bind-pkcs11-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:a8adc5c44faafa72cd05dae5bbcf4771bfb2a2e39e940324cba38860ff26a9fd
  • bind-pkcs11-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:78687fe530242c16436eb16192fb79854af2872ff3d656924f06a3d26f8f952d
  • bind-pkcs11-libs-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:8ea6066aa7fc81e8da1876d7a149020164adf7b337fa8a8fe3e65101a6e71db6
  • bind-pkcs11-libs-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:144775d524c744f17cfa5d86ec3d2344d6a08a85e02659c2cd56694d64c816d9
  • bind-pkcs11-utils-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:ce773c1931fa075787c611b1fd8300be4551f27967bbaf0b3c25a4c27ced7cfb
  • bind-sdb-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:83802a970370887ec7700ec59f764b0ac5cd18022bbe7ce81c17fa061f0a1f4c
  • bind-sdb-chroot-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:d45effaf7855a96f4a906e3957b4f3422642d4a409d161fd24c2967f62031ada
  • bind-utils-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:cfd7c7a00b088bc08f2998a79bfb1ea0e3aa83f0f39da6dac7ec5257f95c3efe
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.