[CLSA-2026:1779978016] unbound: Fix of 3 CVEs
Type:
security
Severity:
Critical
Release date:
2026-05-28 14:20:21 UTC
Description:
- CVE-2026-42960: fix cache poisoning while following delegation - CVE-2026-42959: fix crash during DNSSEC validation of malicious content - CVE-2026-41292: limit incoming EDNS options to prevent DoS
Updated packages:
  • unbound-1.6.6-5.el7_8.tuxcare.els6.x86_64.rpm
    sha:5431d11d0eff4a3803861df812bbffe64dc6d68c3efa26a992f6eea4347a77e4
  • unbound-devel-1.6.6-5.el7_8.tuxcare.els6.i686.rpm
    sha:0932aa0e1d8ffcdf39f50bab139c8a63a2573789023cce21346b37f417669a7a
  • unbound-devel-1.6.6-5.el7_8.tuxcare.els6.x86_64.rpm
    sha:234d6e5995254366870c1f04638cca2c4e8823b992dcd4f685fcb7d68f3ff20b
  • unbound-libs-1.6.6-5.el7_8.tuxcare.els6.i686.rpm
    sha:b958c57b30a4712c132995d59d1517a656554c74f2fabb648d1aba4f8e78e398
  • unbound-libs-1.6.6-5.el7_8.tuxcare.els6.x86_64.rpm
    sha:c368585fffea4a06063a293d58abebc49215fb3a8905b5146f637f0298096dc3
  • unbound-python-1.6.6-5.el7_8.tuxcare.els6.x86_64.rpm
    sha:0411354854eecda799b19e65e0e1453ccc83bc84324d7f4267e8e570e0598278
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.