Описание
ELSA-2026-18931: unbound security update (MODERATE)
[1.24.2-2]
- Switch TLS configuration to follow TLS sockets by crypto-policy again (RHEL-147860)
- Change the default of tls-use-system-policy-versions at build-time
[1.16.2-24]
- Add new root key 38696 (RHEL-77716)
[1.16.2-23]
- Do not verify root.key in libs (RHEL-64339)
[1.16.2-22]
- Create root key if missing automatically (RHEL-127540)
Обновленные пакеты
Oracle Linux 9
Oracle Linux aarch64
python3-unbound
1.24.2-2.el9
unbound
1.24.2-2.el9
unbound-devel
1.24.2-2.el9
unbound-dracut
1.24.2-2.el9
unbound-libs
1.24.2-2.el9
Oracle Linux x86_64
python3-unbound
1.24.2-2.el9
unbound
1.24.2-2.el9
unbound-devel
1.24.2-2.el9
unbound-dracut
1.24.2-2.el9
unbound-libs
1.24.2-2.el9
Связанные CVE
Связанные уязвимости
The DNS protocol in RFC 1035 and updates allows remote attackers to cause a denial of service (resource consumption) by arranging for DNS queries to be accumulated for seconds, such that responses are later sent in a pulsing burst (which can be considered traffic amplification in some cases), aka the "DNSBomb" issue.
The DNS protocol in RFC 1035 and updates allows remote attackers to cause a denial of service (resource consumption) by arranging for DNS queries to be accumulated for seconds, such that responses are later sent in a pulsing burst (which can be considered traffic amplification in some cases), aka the "DNSBomb" issue.