[CLSA-2026:1786551745] bind: Fix of CVE-2026-11622
Type:
security
Severity:
Important
Release date:
2026-08-12 16:22:35 UTC
Description:
- CVE-2026-11622: runaway memory usage in a DNSSEC validating resolver under a random subdomain attack; superseded generations of a cached RRset stayed linked while validation kept the node referenced, so the cache grew far past max-cache-size - CVE-2026-11622: also reference-count the DNAME zone cut headers and initialise the counter for headers faulted in from a 'map' file, two gaps the upstream 9.11 fix leaves open
CVEs fixed:
Updated packages:
  • bind-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:d1cdb650e978d52e79b88b7b3eb1068d13be0ae617189c66937f0386a2f4310e
  • bind-chroot-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:066ddce4b679e45a64359ad1b2da8216cfc5984027d763ab366fb351d31f2e82
  • bind-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:c64430c0dad0494778c62acfd079893108ce93e8b8cd73bd929594ec079e7d3f
  • bind-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:cd3ab86ef77236aa30a38177108bdb3d67a1e4b8800731157c37ffbbac7cd51d
  • bind-export-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:04db9581cfae418dc029bded849869bbe90c319017eed96e18a8e3b844d49d58
  • bind-export-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:095c5e1440db04759d3b73861b56bd31159e5dfb4d532986250add3e4cb47468
  • bind-export-libs-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:84b40ce0a69db4efc2fb7c23eff7fe25fb91b81000f0edb195b1d3cf6da6ef1f
  • bind-export-libs-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:94717da7eb569374e4db980a9bf8c48c229ab7d576c1125712cbc030af164593
  • bind-libs-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:7d30a071f2da38f2735fdf3162807a5c8d82018c7ed88cd7692eb6908c38d100
  • bind-libs-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:7577998bac53bfac54df4f22bde9ef7c87b809d30bc708bdcd4172de6c485ba8
  • bind-libs-lite-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:95bfc8e3980c6127fceeae1de94f18e174013eaa45b5a8debc96b40827a9cdb6
  • bind-libs-lite-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:1c5cad25368aad6b284116d4fa9f55b5de4f1676108520c0b470e9618d0c3f0a
  • bind-license-9.11.4-26.P2.el7_9.16.tuxcare.els16.noarch.rpm
    sha:1862e9779a32c15167563949f3f09aa4feecdbbb8fc541d432e10d804aaabac3
  • bind-lite-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:2f5380ffbc4e221707d072f5eb4ad60f7dd25e04f5ee9242daa4cb39fcc95744
  • bind-lite-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:dcf1e96af005761e2b87a38d28fa5273a9f95f8f18ba48957c505b437b84e550
  • bind-pkcs11-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:cdd722535edd1b6bdd36d41ad270532d581e3e0c5f6a4aaa0c0c7f95f77b0f20
  • bind-pkcs11-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:af246d5d87f8e69bf6e175b3c42e5b83721380c582183f6bb0e5d50afa029e24
  • bind-pkcs11-devel-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:752449a0adbef62eb8e8c2cbe296ed11f7a2f2f0d37eb510a81645beca8136d6
  • bind-pkcs11-libs-9.11.4-26.P2.el7_9.16.tuxcare.els16.i686.rpm
    sha:795a9677de2ec92e9253d26793f122138abf99f3cb78cbd8175a05b2420a8622
  • bind-pkcs11-libs-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:532162ab67264cabb55360670791298e86f96ce75ad7adfcfd3c2b30a2dba688
  • bind-pkcs11-utils-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:52acfa4e7fb6fb7f4275f09b3c729f63cccf418b71f03ea18231379c84a30de9
  • bind-sdb-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:29cbbe87526e222dec665a0f57e72a3a82dfc808a716ffe68612025b917e2ae4
  • bind-sdb-chroot-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:2f6e02cfcb7aacac49c92e30f522a8888bc298c61ffcfe84dce1421587aff3a6
  • bind-utils-9.11.4-26.P2.el7_9.16.tuxcare.els16.x86_64.rpm
    sha:1bfb1ab1754e563ab0620a5958f7fe2b9d8117dbbda9377372ce86a5278104b3
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.