Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2025:21034

Опубликовано: 21 нояб. 2025
Источник: rocky
Оценка: Important

Описание

Important: bind security update

The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly.

Security Fix(es):

  • bind: Cache poisoning attacks with unsolicited RRs (CVE-2025-40778)

  • bind: Cache poisoning due to weak PRNG (CVE-2025-40780)

  • bind: Resource exhaustion via malformed DNSKEY handling (CVE-2025-8677)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 10

НаименованиеАрхитектураРелизRPM
bindx86_6410.el10_1.2bind-9.18.33-10.el10_1.2.x86_64.rpm
bind-chrootx86_6410.el10_1.2bind-chroot-9.18.33-10.el10_1.2.x86_64.rpm
bind-dnssec-utilsx86_6410.el10_1.2bind-dnssec-utils-9.18.33-10.el10_1.2.x86_64.rpm
bind-libsx86_6410.el10_1.2bind-libs-9.18.33-10.el10_1.2.x86_64.rpm
bind-licensenoarch10.el10_1.2bind-license-9.18.33-10.el10_1.2.noarch.rpm
bind-licensenoarch10.el10_1.2bind-license-9.18.33-10.el10_1.2.noarch.rpm
bind-licensenoarch10.el10_1.2bind-license-9.18.33-10.el10_1.2.noarch.rpm
bind-licensenoarch10.el10_1.2bind-license-9.18.33-10.el10_1.2.noarch.rpm
bind-utilsx86_6410.el10_1.2bind-utils-9.18.33-10.el10_1.2.x86_64.rpm

Показывать по

Связанные уязвимости

suse-cvrf
около 1 месяца назад

Security update for bind

suse-cvrf
около 2 месяцев назад

Security update for bind

rocky
29 дней назад

Important: bind9.18 security update

oracle-oval
26 дней назад

ELSA-2025-21111: bind9.18 security update (IMPORTANT)

oracle-oval
19 дней назад

ELSA-2025-21034: bind security update (IMPORTANT)