[CLSA-2026:1780949133] unbound: Fix of CVE-2026-42534
Type:
security
Severity:
Moderate
Release date:
2026-06-08 20:05:49 UTC
Description:
- CVE-2026-42534: fix jostle logic bypass that degrades resolution performance by tracking the first reply time per mesh state [ELSCVE-128376]
CVEs fixed:
Updated packages:
  • python3-unbound-1.16.2-3.el9_2.tuxcare.els9.x86_64.rpm
    sha:a038eca38770cd5d7a38c597eacd808a8e5e3dc468f7c3e21796703eface28f7
  • unbound-1.16.2-3.el9_2.tuxcare.els9.x86_64.rpm
    sha:f921dd7a5efc9e640a7c8d2d1c5c695a67f3b209845c8edf39b186de7d7ec13d
  • unbound-devel-1.16.2-3.el9_2.tuxcare.els9.i686.rpm
    sha:2f2d98483399427f5939263fa524452a5155955e7aa1bfb9c8be5a1caea0ce0c
  • unbound-devel-1.16.2-3.el9_2.tuxcare.els9.x86_64.rpm
    sha:fc5eeea3c8e527de083677eccdef28400dcf6c099caa7461f6158007bd45400f
  • unbound-libs-1.16.2-3.el9_2.tuxcare.els9.i686.rpm
    sha:5297dc4c4f672bb665e4e857c938b97fcf1035f70d70ec0de4dd568163a3edfb
  • unbound-libs-1.16.2-3.el9_2.tuxcare.els9.x86_64.rpm
    sha:4db06ee82509deb15a497a48d81851d40e5759d85a33298da256e3c6de69322b
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.