[ALSA-2026:71487] Critical: unbound security update
Type:
security
Severity:
critical
Release date:
2026-09-25
Description:
The unbound packages provide a validating, recursive, and caching DNS or DNSSEC resolver. Security Fix(es): * unbound: Unbound: Remote Code Execution Vulnerability in CNAME Synthesis (CVE-2026-82717) * unbound: Unbound: Heap buffer overflow via malicious DNSSEC response (CVE-2026-81634) * unbound: Unbound: Heap buffer overflow and possible Remote Code Execution when digesting DNSKEY (CVE-2026-81642) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 unbound-libs-1.24.2-3.el9_8.8.aarch64.rpm 3158e01fda67ac06354b2d63252bb73f01a026f60f7dcf9b1de73a85165287ef
aarch64 unbound-devel-1.24.2-3.el9_8.8.aarch64.rpm 56d1a61b6bf125aa4c946c978761bc73ee0ef84f54616b4cb9663f3e68236532
aarch64 unbound-1.24.2-3.el9_8.8.aarch64.rpm 86b7941dc41522db67cc3b00aae0a1bbc7ede73dba380273884fa955e472b4dc
aarch64 python3-unbound-1.24.2-3.el9_8.8.aarch64.rpm c5f619dd30e8be9de04dd64f411a4b8713e7b40915ea1b60342e6de741918eba
aarch64 unbound-dracut-1.24.2-3.el9_8.8.aarch64.rpm d04d19517e83fa09677bf59e79d6360ad348950dd4a9112b4280f69878c6876c
i686 unbound-libs-1.24.2-3.el9_8.8.i686.rpm 25ff58e993fd889f9d961b54c0287300bb8e2e14f3a84e5b43eb52057cbc4abf
i686 unbound-devel-1.24.2-3.el9_8.8.i686.rpm 80ea5b80af3a6003cd1307776b2953095b21589a41076e8cf3e9dc823ee72dbc
ppc64le unbound-1.24.2-3.el9_8.8.ppc64le.rpm 002251808ee4ff31742774972b4699cf423cd6656b8941cf93b80454bc32ccc2
ppc64le unbound-libs-1.24.2-3.el9_8.8.ppc64le.rpm 278acf1989b0d2bf6ecc9130348dd9e26743faa09d261f591bb4a94a41aafd73
ppc64le python3-unbound-1.24.2-3.el9_8.8.ppc64le.rpm 2ecaace7b289a4d0d63e45df35450848aa600e8d9b4bffdb7a0eea04e4b868cf
ppc64le unbound-dracut-1.24.2-3.el9_8.8.ppc64le.rpm 57384ad83ad8cbc9340e7b13c25bf635a5fdeedf80e65c936fb7aae9b6c6da1e
ppc64le unbound-devel-1.24.2-3.el9_8.8.ppc64le.rpm fd8fc94cde659f343c8be51e5f15cc1261bba916e1496275325593002c426329
s390x unbound-devel-1.24.2-3.el9_8.8.s390x.rpm 2ea650453930d89a621d7f1b79dddfd8d66e8f3065616a1d81c1a5f12141ea50
s390x python3-unbound-1.24.2-3.el9_8.8.s390x.rpm 4637362ba8d92790dc966e46c5ea6c92623dfb84e712e2b430d4097c3036c3ff
s390x unbound-dracut-1.24.2-3.el9_8.8.s390x.rpm 652923d142b360fdd42343557a1e1f1f50b9cb7bd0bd6d51c4168e4721489f5f
s390x unbound-libs-1.24.2-3.el9_8.8.s390x.rpm 6c353721019446d708f1b09ad6b5499436319bf9ceb53524bc8b24c889ddac93
s390x unbound-1.24.2-3.el9_8.8.s390x.rpm 800013632a6b1f23e874c6c228047621050c31cffca6f36337b6a9103da7f0b3
x86_64 unbound-dracut-1.24.2-3.el9_8.8.x86_64.rpm 2a697efce1afca65a1e0a6411cb2ebd0e2ac7caa090195ee9a12a40f8ac02104
x86_64 python3-unbound-1.24.2-3.el9_8.8.x86_64.rpm 2ef383beec73f79b5b30263d36578f81a227fc729dc3cf7fd2d44a1fb703252a
x86_64 unbound-devel-1.24.2-3.el9_8.8.x86_64.rpm af48d757ff9e24ff561a52f43c141e3c21b2702cd3cf681ffa12c487c2262d90
x86_64 unbound-libs-1.24.2-3.el9_8.8.x86_64.rpm f46b34e195fd7adf5e1a382ee02747cd4d5401815a802944103419962689a65f
x86_64 unbound-1.24.2-3.el9_8.8.x86_64.rpm f5ba6b6cab0f733b53c17f2837c8f346cfc044f424208ac7ca54e8d471cf2880
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.