unbound-1.24.2-3.el9_8.8

エラータID: AXSA:2026-1924:15

Release date: 
Monday, September 28, 2026 - 14:51
Subject: 
unbound-1.24.2-3.el9_8.8
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
High
Description: 

The unbound packages provide a validating, recursive, and caching DNS or DNSSEC resolver.

Security Fix(es):

* unbound: Unbound: Remote Code Execution Vulnerability in CNAME Synthesis (CVE-2026-82717)
* unbound: Unbound: Heap buffer overflow via malicious DNSSEC response (CVE-2026-81634)
* unbound: Unbound: Heap buffer overflow and possible Remote Code Execution when digesting DNSKEY (CVE-2026-81642)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2026-81634
In NLnet Labs Unbound up to and including 1.26.0, a 255 length query name with a large TCP response can lead to a heap buffer overflow during the RRSet canonicalisation routine. This is caused by missing to add the first owner name into the buffer length check. A malicious actor operating a malicious name server or tampering with an incoming response to Unbound (canonicalisation happens before DNSSEC validation), can trigger the vulnerability.
CVE-2026-81642
In NLnet Labs Unbound up to and including 1.26.0, a vulnerability was found in the DNSSEC validator that enables denial of service and possible remote code execution as a result of digesting DNSKEYs. A DNSKEY with an owner compression pointer to its own RDATA can overflow the digest buffer. Remote code execution is possible through attacker controlled data. An adversary can exploit the vulnerability by controlling a malicious zone and querying a vulnerable Unbound.
CVE-2026-82717
In NLnet Labs Unbound up to and including 1.26.0, a vulnerability was found in that can progressively corrupt heap memory and under certain systems and compilation options could lead to remote code execution. The vulnerability starts when CNAME synthesis during an upstream response needs to enforce(rewrite) a max TTL value in the packet buffer. Coupled with a compression pointer that points to the overwritten value and invalidates the domain name, it leads to an error path that does not properly move the buffer position and allows for the heap buffer overflow. Since this is heavily reliant on heap memory layout, results are memory corruption that eventually leads to a crash and under specific systems and compilation options remote code execution.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. unbound-1.24.2-3.el9_8.8.src.rpm
    MD5: 4b016999a6bf8e0ca6ef42c296bc0ada
    SHA-256: 3dd5e9480a3678d75cb82710ef0c03adbb8d039f19d9e7365891f3a9deb7d62a
    Size: 6.70 MB

Asianux Server 9 for x86_64
  1. python3-unbound-1.24.2-3.el9_8.8.x86_64.rpm
    MD5: e32173550f48664690f9d8d5a7845984
    SHA-256: 514205bca12bd609db5e27a0f23c08f63f921cdb999c86a75f1fddcff1188ec3
    Size: 107.46 kB
  2. unbound-1.24.2-3.el9_8.8.x86_64.rpm
    MD5: 12eea94c04aad149885913c3e31bb5f2
    SHA-256: d2e511c5a54697295be19ada4f30763c7f8a2c3447b6b229732ce394e42c9daf
    Size: 1.05 MB
  3. unbound-devel-1.24.2-3.el9_8.8.i686.rpm
    MD5: a59283d594f2f551f5a44622a9feb553
    SHA-256: e83488730d6730aa033ec081643cb3d3ffb47c198f32cf007c116ca9f8ad4d58
    Size: 37.64 kB
  4. unbound-devel-1.24.2-3.el9_8.8.x86_64.rpm
    MD5: f3e2771d4806e8bbf0c2d31960db4659
    SHA-256: 8945194eed19592ec4cbbb9fda495f5d1170ca739b622179bf5e8433ea6f5ef5
    Size: 37.62 kB
  5. unbound-dracut-1.24.2-3.el9_8.8.x86_64.rpm
    MD5: e1f7d9a811098825987ce1efea6ff6a4
    SHA-256: 1c0fc85e84246666e8773755214f52ce328284b4275fe2a3a9609b90d05664fe
    Size: 8.50 kB
  6. unbound-libs-1.24.2-3.el9_8.8.i686.rpm
    MD5: dd2fdaeb02ee8405c131395fc862ec95
    SHA-256: eabc2a55ebddf8f645daa69875816f4782f225dc2651ebee0b45abc2008b80b6
    Size: 609.51 kB
  7. unbound-libs-1.24.2-3.el9_8.8.x86_64.rpm
    MD5: 04ade7f53c9bdded75039b289e0c0681
    SHA-256: 094e1d312684a1b31af1f35d32642d002b1d788412433b1cb20b8e0d9e2938ff
    Size: 583.72 kB