[CLSA-2026:1779961008] unbound: Fix of CVE-2026-42960
Type:
security
Severity:
Critical
Release date:
2026-05-28 09:36:52 UTC
Description:
- CVE-2026-42960: fix cache poisoning attack where promiscuous non-NS RRSets with companion glue in the authority section could cause unrelated address records to be cached as a side effect of the query
Updated packages:
  • python3-unbound-1.16.2-19.el9_6.1.tuxcare.els3.x86_64.rpm
    sha:82240fbbebb8856790d3224406727929a9f6ff5f33657e3d2cb4facde0ead53c
  • unbound-1.16.2-19.el9_6.1.tuxcare.els3.x86_64.rpm
    sha:4dcb05454ff8ff6932e6bd4a536053e2bde1df395a4bc4ef96487cd6839fe135
  • unbound-devel-1.16.2-19.el9_6.1.tuxcare.els3.i686.rpm
    sha:ef2d9ddfa0eff06dcd198547f541ba95c4dce3e5cccb3fa647ca35fb59e163ab
  • unbound-devel-1.16.2-19.el9_6.1.tuxcare.els3.x86_64.rpm
    sha:d1ea9088bf3233ed798b63b11a0aebe19544788fedadd2b8ba0e42faefbce4ae
  • unbound-dracut-1.16.2-19.el9_6.1.tuxcare.els3.x86_64.rpm
    sha:ae27a7b94384b85a1b937b515028af9794ceb9662e97fff5e9b7174238bfc879
  • unbound-libs-1.16.2-19.el9_6.1.tuxcare.els3.i686.rpm
    sha:39b28bf8dc4567c75c62eb5b0acf7a26a09e361a827db640899c430aa6fefbc4
  • unbound-libs-1.16.2-19.el9_6.1.tuxcare.els3.x86_64.rpm
    sha:be954af904929a43ed86d75a399ef3fe74553926392f9dcd9a2a341800c53e0c
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.