Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

bind-dnssec-utils-9.18.33-15.el10_2.12 RPM for s390x

From AlmaLinux 10.2 AppStream for s390x

Name: bind-dnssec-utils Distribution: AlmaLinux
Version: 9.18.33 Vendor: AlmaLinux
Release: 15.el10_2.12 Build date: Tue Oct 6 03:38:26 2026
Group: Unspecified Build host: s390x-builder01.almalinux.org
Size: 435327 Source RPM: bind-9.18.33-15.el10_2.12.src.rpm
Packager: AlmaLinux Packaging Team <packager@almalinux.org>
Url: https://www.isc.org/downloads/bind/
Summary: DNSSEC keys and zones management utilities
bind-dnssec-utils contains a collection of utilities for editing
DNSSEC keys and BIND zone files. These tools provide generation,
revocation and verification of keys and DNSSEC signatures in zone files.

You should install bind-dnssec-utils if you need to sign a DNS zone
or maintain keys for it.

Provides

Requires

License

MPL-2.0 AND ISC AND MIT AND BSD-3-Clause AND BSD-2-Clause

Changelog

* Thu Sep 17 2026 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-15.12
  - Prevent assertion failure in dns64 mode with break-dnssec yes (CVE-2026-19666)
  - Prevent memory leak on following HTTPS/SVCB RR (CVE-2026-81563)
  - Prevent crash on wildcard responses containing both NSEC and NSEC3 proofs (CVE-2026-80274)
  - Reject oversized negative cached records early (CVE-2026-19667)
  - Set limit to following HTTPS/SVCB aliases (CVE-2026-81736)
* Wed Sep 02 2026 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-15.11
  - Add new root key 38696 into package files too (RHEL-252999)
* Mon Jul 27 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 32:9.18.33-15.10
  - Validate NSEC3 signer matches owning zone (CVE-2026-10723)
* Fri Jul 24 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 32:9.18.33-15.9
  - Reject out-of-zone NSEC next owner names (CVE-2026-13321)
* Thu Jul 23 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 32:9.18.33-15.7
  - Fix reference-counted dns_slabheaders in cache (CVE-2026-11622)
* Thu Jul 23 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 32:9.18.33-15.6
  - Fix RRSIG label count validation for wildcard cache poisoning
    (CVE-2026-11721)
* Thu Jul 23 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 32:9.18.33-15.5
  - Fix RPZ name-too-long wildcard expansion (CVE-2026-11331)
* Thu Jul 23 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 32:9.18.33-15.4
  - Fix assertion failure on malformed NSEC/NSEC3 responses
    (CVE-2026-13204)
* Mon May 25 2026 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-15.2
  - Fix GSS-API resource leak (CVE-2026-3039)
  - Invalid handling of CLASS != IN (CVE-2026-5946)
* Fri Mar 27 2026 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-15.1
  - Prevent Denial of Service via maliciously crafted DNSSEC-validated zone
    (CVE-2026-1519)
* Wed Jan 28 2026 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-15
  - Add forgotten _libdir/named into bind-chroot tmpfiles (RHEL-132053)
* Fri Dec 12 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-14
  - Create /var/named directories for bind-chroot (RHEL-132053)
* Fri Oct 31 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-13
  - Fix upstream reported regression in recent CVE fix (CVE-2025-8677)
* Thu Oct 23 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-12
  - Refuse malformed DNSKEY records (CVE-2025-8677)
  - Address various spoofing attacks (CVE-2025-40778)
  - Prevent cache poisoning due to weak PRNG (CVE-2025-40780)
* Fri Oct 03 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-11
  - Move named.* files from /var/named into /usr/share/named
  - Move named.ca into /etc/named.ca
* Tue Sep 16 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-10
  - Fix failures in idna system test (RHEL-66172)
* Fri Sep 12 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-9
  - Decode IDN names on input in all situations in utilities (RHEL-66172)
* Fri Sep 12 2025 Petr Menšík <<pemensik@redhat.com>> - 32:9.18.33-8
  - logrotate: skip if empty and remove old variants (RHEL-113942)
* Wed Jul 09 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-7
  - Add runtime tunable limit by environment NAMED_MAXADDITIONAL (RHEL-84006)
* Fri Jun 20 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-6
  - Change additional NS to be served partially (RHEL-84006)
* Tue Jun 10 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-5
  - Backport support for OpenSSL provider required for PKCS11 labels
* Tue Jun 10 2025 Petr Mensik <pemensik@redhat.com> - 32:9.18.33-4
  - Prevent name.c:670 attributes assertion failed (RHEL-30407)
  - Add extra checks for relative names
* Thu Feb 13 2025 Thomas Woerner <twoerner@redhat.com> - 32:9.18.33-3
  - Fix upgrade of doc sub package to remove links replaced by directories
    (RHEL-48798)
* Sun Feb 02 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-2
  - Add nsupdate TLS support (RHEL-77354)
  - Include a test for nsupdate changes
* Sun Feb 02 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.33-1
  - Update to 9.16.33 (rhbz#2342784)
  - Make relative documentation links
  - Permanently remove DLZ parts build
* Fri Jan 17 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.32-2
  - Add sysusers named user creation (rhbz#2105415)
* Thu Dec 12 2024 Petr Menšík <pemensik@redhat.com> - 32:9.18.32-1
  - Update to 9.18.32 (RHEL-48798)
  - Remove CHANGES file from package
* Tue Oct 29 2024 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-1
  - Update to 9.18.29 (RHEL-48798)
* Tue Oct 29 2024 Petr Menšík <pemensik@redhat.com> - 32:9.18.28-1
  - Update to 9.18.28 (RHEL-48798)
* Tue Oct 29 2024 Petr Menšík <pemensik@redhat.com> - 32:9.18.27-6
  - Update to 9.18.27 (RHEL-48798)
* Tue Oct 29 2024 Troy Dawson <tdawson@redhat.com> - 32:9.18.21-7
  - Bump release for October 2024 mass rebuild:
    Resolves: RHEL-64018
* Tue Oct 08 2024 Petr Menšík <pemensik@redhat.com> - 32:9.18.21-6
  - Make OpenSSL engine support optional and disabled (RHEL-22408)

Files

/usr/bin/dnssec-cds
/usr/bin/dnssec-dsfromkey
/usr/bin/dnssec-importkey
/usr/bin/dnssec-keyfromlabel
/usr/bin/dnssec-keygen
/usr/bin/dnssec-revoke
/usr/bin/dnssec-settime
/usr/bin/dnssec-signzone
/usr/bin/dnssec-verify
/usr/lib/.build-id
/usr/lib/.build-id/11
/usr/lib/.build-id/11/91800ee50929defe5d2c5aa4eb656b429cf2e9
/usr/lib/.build-id/56
/usr/lib/.build-id/56/7150b2c12b6466f0dd4ed23d11b7e15f523c1d
/usr/lib/.build-id/77
/usr/lib/.build-id/77/5b234e697e4088621ca0c8f6e11b373adbe903
/usr/lib/.build-id/8a
/usr/lib/.build-id/8a/20b6e87f6e7c287e96ac06af08b4e002affbd1
/usr/lib/.build-id/b6
/usr/lib/.build-id/b6/01b58a676637cfb20d173ceee4bda48db790ba
/usr/lib/.build-id/c3
/usr/lib/.build-id/c3/85aa34f7230d0fd0869a969a0f6f58b9ad9d8b
/usr/lib/.build-id/ea
/usr/lib/.build-id/ea/0cdb84e13c5f7434f94e11a7f4155f3ac93048
/usr/lib/.build-id/f8
/usr/lib/.build-id/f8/9faddd4d5f99998e7b4576b947619f5f8627c5
/usr/lib/.build-id/ff
/usr/lib/.build-id/ff/ec344481e3fdb303ec35c733dd996fa74dd3be
/usr/share/man/man1/dnssec-cds.1.gz
/usr/share/man/man1/dnssec-dsfromkey.1.gz
/usr/share/man/man1/dnssec-importkey.1.gz
/usr/share/man/man1/dnssec-keyfromlabel.1.gz
/usr/share/man/man1/dnssec-keygen.1.gz
/usr/share/man/man1/dnssec-revoke.1.gz
/usr/share/man/man1/dnssec-settime.1.gz
/usr/share/man/man1/dnssec-signzone.1.gz
/usr/share/man/man1/dnssec-verify.1.gz


Generated by rpm2html 1.8.1

Fabrice Bellet, Wed Oct 7 09:38:49 2026