| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: unbound-libs | Distribution: CentOS |
| Version: 1.26.1 | Vendor: CentOS |
| Release: 2.el10 | Build date: Fri Sep 25 11:18:26 2026 |
| Group: Unspecified | Build host: ppc64le-01.stream.rdu2.redhat.com |
| Size: 1847433 | Source RPM: unbound-1.26.1-2.el10.src.rpm |
| Packager: builder@centos.org | |
| Url: https://nlnetlabs.nl/projects/unbound/ | |
| Summary: Libraries used by the unbound server and client applications | |
Contains libraries used by the unbound server and client applications.
BSD-3-Clause
* Fri Sep 25 2026 Petr Menšík <pemensik@redhat.com> - 1.26.1-2
- Backport additional unit test for CVEs after the release
* Fri Sep 25 2026 Petr Menšík <pemensik@redhat.com> - 1.26.1-1
- Update to 1.26.1
- Fix CVE-2026-81642, Heap buffer overflow and possible Remote Code
Execution when digesting DNSKEY. Thanks to Yuqi Qiu and Xiang Li from
Nankai University, AOSP Lab for the report.
- Fix CVE-2026-81634, Possible heap buffer overflow during DNSSEC
canonicalization. Thanks to Vlatko Kosturjak with Marlink Cyber for the
report.
- Fix CVE-2026-82717, CNAME synthesis could lead to heap corruption. Thanks
to Ben Morris from Anthropic for the report.
- Fix CVE-2026-77955, Possible ZONEMD verification bypass window. Thanks to
Yuqi Qiu and Xiang Li from Nankai University, AOSP Lab, In addition,
thanks to Qifan Zhang from Palo Alto Networks for also reporting this
issue.
- Fix CVE-2026-78227, Use-after-free in DoQ stream output buffer on reset
re-transmission. Thanks to Yuqi Qiu and Xiang Li from Nankai University,
AOSP Lab for the report.
- Fix CVE-2026-80225, Possible degradation of service from continuous
queries on the same TCP/DoT connection. Thanks to Qifan Zhang from Palo
Alto Networks for the report.
- Fix CVE-2026-82720, Use-after-free in DoH stream cleanup code path.
Thanks to Yuqi Qiu and Xiang Li from Nankai University, AOSP Lab for the
report.
- Fix CVE-2026-85501, Retrap: Novel Vulnerabilities to launch Algorithmic
Complexity Attacks on DNSSEC. Thanks to Zuyao Xu and Xiang Li from Nankai
University, AOSP Lab for report. In addition, thanks to Qifan Zhang from
Palo Alto Networks for a complimentary report.
- Fix CVE-2026-77860, 'serve-expired' can bypass Unbound 'wait-limit'.
Thanks to Xuanchao Xie, Lutong Chen, and Kaiping Xue from the University
of Science and Technology of China (USTC) for the report.
* Thu Aug 06 2026 Fedor Vorobev <fvorobev@redhat.com> - 1.26.0-1
- Update to 1.26.0
* Fri Jul 03 2026 Fedor Vorobev <fvorobev@redhat.com> - 1.25.1-1
- Update to 1.25.1
* Fri Feb 13 2026 Petr Menšík <pemensik@redhat.com> - 1.24.2-7
- Recreate configure unconditionally
* Mon Feb 09 2026 Petr Menšík <pemensik@redhat.com> - 1.24.2-6
- Add byacc into BuildRequires
* Mon Feb 09 2026 Petr Menšík <pemensik@redhat.com> - 1.24.2-5
- Change the default of tls-use-system-policy-versions at build-time
* Mon Feb 09 2026 Petr Menšík <pemensik@redhat.com> - 1.24.2-4
- Switch TLS configuration to follow TLS sockets by crypto-policy again
* Tue Dec 02 2025 Petr Menšík <pemensik@redhat.com> - 1.24.2-3
- Export utils subpackage into AppStream repository
* Mon Dec 01 2025 Petr Menšík <pemensik@redhat.com> - 1.24.2-2
- Add Yorgos PGP key for validation
* Mon Dec 01 2025 Petr Menšík <pemensik@redhat.com> - 1.24.2-1
- Update to 1.24.2
- Fixes CVE-2025-11411
* Wed Nov 26 2025 Petr Menšík <pemensik@redhat.com> - 1.20.0-18
- Add new DNSSEC root anchor 38696
* Wed Nov 26 2025 Petr Menšík <pemensik@redhat.com> - 1.20.0-17
- Make root.key maintained unmodified
* Fri Oct 10 2025 Petr Menšík <pemensik@redhat.com> - 1.20.0-16
- Create root key if missing automatically
* Fri Aug 29 2025 Petr Menšík <pemensik@redhat.com> - 1.20.0-15
- Correct existing unbound_control.key permissions
* Fri Aug 29 2025 Petr Menšík <pemensik@redhat.com> - 1.20.0-14
- Fix permissions of created control and server key
* Mon Jul 28 2025 Tomas Korbar <tkorbar@redhat.com> - 1.20.0-13
- Fix RebirthDay Attack (CVE-2025-5994)
* Mon Jul 28 2025 Tomas Korbar <tkorbar@redhat.com> - 1.20.0-12
- Bump release
* Thu Jun 05 2025 psklenar@redhat.com <psklenar@redhat.com> - 1.20.0-11
- https://issues.redhat.com/browse/RHELMISC-13073
* Wed May 14 2025 Petr Menšík <pemensik@redhat.com> - 1.20.0-10
- Prevent unbounded name compression (CVE-2024-8508)
* Mon Feb 10 2025 Tomas Korbar <tkorbar@redhat.com> - 1.20.0-9
- Add possibility to disable unbound-anchor by file presence
* Fri Feb 07 2025 Tomas Korbar <tkorbar@redhat.com> - 1.20.0-8
- Change service type to notify
* Tue Feb 04 2025 Tomas Korbar <tkorbar@redhat.com> - 1.20.0-7
- Enabled libsystemd and change unbound service type to notify-reload
* Tue Feb 04 2025 Tomas Korbar <tkorbar@redhat.com> - 1.20.0-6
- Add dracut module
* Tue Feb 04 2025 Tomas Korbar <tkorbar@redhat.com> - 1.20.0-5
- Use ip-freebind: yes or add After=network-online.target
* Tue Feb 04 2025 Tomas Korbar <tkorbar@redhat.com> - 1.20.0-4
- Move defaults to separate configuration file
* Tue Feb 04 2025 Tomas Korbar <tkorbar@redhat.com> - 1.20.0-3
- Deactivate automatic root zone fetching
* Tue Oct 29 2024 Troy Dawson <tdawson@redhat.com> - 1.20.0-2
- Bump release for October 2024 mass rebuild:
/etc/unbound /etc/unbound/dnssec-root.key /etc/unbound/root.key /usr/lib/.build-id /usr/lib/.build-id/c1 /usr/lib/.build-id/c1/802500c75bab4a8941fabea195fad94ba0a3b2 /usr/lib/sysusers.d/unbound.conf /usr/lib/tmpfiles.d/unbound-libs.conf /usr/lib64/libunbound.so.8 /usr/lib64/libunbound.so.8.1.40 /usr/share/doc/unbound-libs /usr/share/doc/unbound-libs/README /usr/share/licenses/unbound-libs /usr/share/licenses/unbound-libs/LICENSE /var/lib/unbound /var/lib/unbound/root.key
Generated by rpm2html 1.8.1
Fabrice Bellet, Tue Sep 29 03:55:01 2026