[CLSA-2026:1785318558] unbound: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-07-29 09:49:30 UTC
Description:
- CVE-2026-42923: cap NSEC3 hash calculations in the negative-cache DS proof and reject oversized NSEC3 salt - CVE-2024-43168: reject negative port numbers in outgoing-port-permit/avoid to prevent an out-of-bounds write
Updated packages:
  • python3-unbound-1.16.2-3.el9_2.tuxcare.els10.x86_64.rpm
    sha:01198e5dfbf4775d475e042585846e18e5597184d7e67970680b8875452d36fc
  • unbound-1.16.2-3.el9_2.tuxcare.els10.x86_64.rpm
    sha:275b9667543387b9de3e18bdf7fad2fef15831d51c2cfb6a3a309c4e0a7bfa62
  • unbound-devel-1.16.2-3.el9_2.tuxcare.els10.i686.rpm
    sha:645d0a6b0b33c9db87dc14eb4b17e67d0eb1b7fc9db607ec230fa1be37e393e3
  • unbound-devel-1.16.2-3.el9_2.tuxcare.els10.x86_64.rpm
    sha:7c18eacb7a7c3df1291d665bec3adddfd454fc6be2ea5177bfe9d79dc2dbdabb
  • unbound-libs-1.16.2-3.el9_2.tuxcare.els10.i686.rpm
    sha:bcd62679b693e96759c5200b90799b4780636f5cbc95c4197c83ba7ecb8cd567
  • unbound-libs-1.16.2-3.el9_2.tuxcare.els10.x86_64.rpm
    sha:dff304bc0f0af3faaabbd15fa1c3fccf29d2437d933cbdc56fb458fd270c4dae
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.