[CLSA-2026:1779965336] unbound: Fix of 3 CVEs
Type:
security
Severity:
Critical
Release date:
2026-05-29 14:37:18 UTC
Description:
- CVE-2026-42960: fix cache poisoning while following delegation - CVE-2026-42959: fix crash during DNSSEC validation of malicious content - CVE-2026-41292: limit incoming EDNS options to prevent DoS
Updated packages:
  • unbound-1.6.6-5.el7_8.tuxcare.els6.x86_64.rpm
    sha:fcdd15408fbe75faa17bf9ad94c3b918bd0c3549e4540de2e74a0a18d7500edc
  • unbound-devel-1.6.6-5.el7_8.tuxcare.els6.i686.rpm
    sha:4f88eef4551cd07c17eaf6e97566ca78f05779460c49a4c9b65b6d32e7eab80e
  • unbound-devel-1.6.6-5.el7_8.tuxcare.els6.x86_64.rpm
    sha:9f0473619d99de850fbe9dceb4d61f0b70796ce95ef4c3687d16ee109286130e
  • unbound-libs-1.6.6-5.el7_8.tuxcare.els6.i686.rpm
    sha:acb1cfb66ceed21a9d81c1e28ca7b18741ae42c789656305321c94042ded3ce7
  • unbound-libs-1.6.6-5.el7_8.tuxcare.els6.x86_64.rpm
    sha:0117e955f70bc53ccb7746bd738d47d6c4c6784105704d04ef5481c9f8572000
  • unbound-python-1.6.6-5.el7_8.tuxcare.els6.x86_64.rpm
    sha:1d3602ac8797d9b424693b4f307bdce93d35eb0d97fd7517e026396507f4459a
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.