Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:18786

Опубликовано: 28 мая 2026
Источник: rocky
Оценка: Important

Описание

Important: bind security update

The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly.

Security Fix(es):

  • bind: Resource exhaustion via malformed DNSKEY handling (CVE-2025-8677)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 9 Release Notes linked from the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
bindx86_6440.el9_8.1bind-9.16.23-40.el9_8.1.x86_64.rpm
bind-chrootx86_6440.el9_8.1bind-chroot-9.16.23-40.el9_8.1.x86_64.rpm
bind-dnssec-docnoarch40.el9_8.1bind-dnssec-doc-9.16.23-40.el9_8.1.noarch.rpm
bind-dnssec-utilsx86_6440.el9_8.1bind-dnssec-utils-9.16.23-40.el9_8.1.x86_64.rpm
bind-libsx86_6440.el9_8.1bind-libs-9.16.23-40.el9_8.1.x86_64.rpm
bind-licensenoarch40.el9_8.1bind-license-9.16.23-40.el9_8.1.noarch.rpm
bind-utilsx86_6440.el9_8.1bind-utils-9.16.23-40.el9_8.1.x86_64.rpm
python3-bindnoarch40.el9_8.1python3-bind-9.16.23-40.el9_8.1.noarch.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 7.5
ubuntu
9 месяцев назад

Querying for records within a specially crafted zone containing certain malformed DNSKEY records can lead to CPU exhaustion. This issue affects BIND 9 versions 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 7.5
redhat
9 месяцев назад

Querying for records within a specially crafted zone containing certain malformed DNSKEY records can lead to CPU exhaustion. This issue affects BIND 9 versions 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 7.5
nvd
9 месяцев назад

Querying for records within a specially crafted zone containing certain malformed DNSKEY records can lead to CPU exhaustion. This issue affects BIND 9 versions 9.18.0 through 9.18.39, 9.20.0 through 9.20.13, 9.21.0 through 9.21.12, 9.18.11-S1 through 9.18.39-S1, and 9.20.9-S1 through 9.20.13-S1.

CVSS3: 7.5
msrc
8 месяцев назад

Resource exhaustion via malformed DNSKEY handling

CVSS3: 7.5
debian
9 месяцев назад

Querying for records within a specially crafted zone containing certai ...