[CLSA-2026:1785490706] unbound: Fix of 3 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-07-31 09:38:38 UTC
Description:
- CVE-2024-43167: guard against a NULL forward-zone name in ub_ctx_set_fwd to prevent a NULL pointer dereference - CVE-2026-44690: reject RRSIG label counts below the signer label count and restrict wildcard rrset cache updates to the signer authority, deferring the cache write until the proof succeeds - CVE-2026-56416: bound the second domain name in canonicalized RDATA and reject multi-dname RRs whose rdata ends early, preventing a heap buffer overflow
Updated packages:
  • python3-unbound-1.16.2-19.el9_6.1.tuxcare.els11.x86_64.rpm
    sha:ec2741b482fe799ea10a0dd8a7a50a9d4c2cbd16157e81fa3442f6da82485c4b
  • unbound-1.16.2-19.el9_6.1.tuxcare.els11.x86_64.rpm
    sha:e450419e906285603c6d6f559a9c80d6fe4ab759bcfb68057980990cd524b605
  • unbound-devel-1.16.2-19.el9_6.1.tuxcare.els11.i686.rpm
    sha:0a294bdbf715c49731bc36260ef82588597d83a29680faba3e54e7ed065bef28
  • unbound-devel-1.16.2-19.el9_6.1.tuxcare.els11.x86_64.rpm
    sha:0063803e88ac7409abe4cf8cd3460b66935224ec54896d0f47f14463dec9265a
  • unbound-dracut-1.16.2-19.el9_6.1.tuxcare.els11.x86_64.rpm
    sha:74916dc1c4cbf12ab7feaddc76981515215d40673ac4f8b6197954caa3d66003
  • unbound-libs-1.16.2-19.el9_6.1.tuxcare.els11.i686.rpm
    sha:aa2736031d6a46102a3ea4d1e47cd076ab30f76158aa4531d0391203a70de1f9
  • unbound-libs-1.16.2-19.el9_6.1.tuxcare.els11.x86_64.rpm
    sha:4dc910039559a67ddc491143901f3fdfe54814ef80da60fad8007523ecf666df
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.