Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2025:21110

Опубликовано: 21 нояб. 2025
Источник: rocky
Оценка: Important

Описание

Important: bind security update

The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly.

Security Fix(es):

  • bind: Cache poisoning attacks with unsolicited RRs (CVE-2025-40778)

  • bind: Cache poisoning due to weak PRNG (CVE-2025-40780)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
bindx86_6434.el9_7.1bind-9.16.23-34.el9_7.1.x86_64.rpm
bind-chrootx86_6434.el9_7.1bind-chroot-9.16.23-34.el9_7.1.x86_64.rpm
bind-dnssec-docnoarch34.el9_7.1bind-dnssec-doc-9.16.23-34.el9_7.1.noarch.rpm
bind-dnssec-docnoarch34.el9_7.1bind-dnssec-doc-9.16.23-34.el9_7.1.noarch.rpm
bind-dnssec-docnoarch34.el9_7.1bind-dnssec-doc-9.16.23-34.el9_7.1.noarch.rpm
bind-dnssec-docnoarch34.el9_7.1bind-dnssec-doc-9.16.23-34.el9_7.1.noarch.rpm
bind-dnssec-utilsx86_6434.el9_7.1bind-dnssec-utils-9.16.23-34.el9_7.1.x86_64.rpm
bind-libsx86_6434.el9_7.1bind-libs-9.16.23-34.el9_7.1.x86_64.rpm
bind-licensenoarch34.el9_7.1bind-license-9.16.23-34.el9_7.1.noarch.rpm
bind-licensenoarch34.el9_7.1bind-license-9.16.23-34.el9_7.1.noarch.rpm

Показывать по

Связанные CVE

Связанные уязвимости

suse-cvrf
около 1 месяца назад

Security update for bind

suse-cvrf
около 1 месяца назад

Security update for bind

suse-cvrf
около 1 месяца назад

Security update for bind

rocky
около 1 месяца назад

Important: bind9.16 security update

oracle-oval
26 дней назад

ELSA-2025-21110: bind security update (IMPORTANT)