| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: bind9.18-libs | Distribution: CentOS |
| Version: 9.18.29 | Vendor: CentOS |
| Release: 25.el9 | Build date: Fri Aug 28 01:20:29 2026 |
| Group: Unspecified | Build host: aarch64-02.stream.rdu2.redhat.com |
| Size: 3726911 | Source RPM: bind9.18-9.18.29-25.el9.src.rpm |
| Packager: builder@centos.org | |
| Url: https://www.isc.org/downloads/bind/ | |
| Summary: Libraries used by the BIND DNS packages | |
Contains heavyweight version of BIND suite libraries used by both named DNS server and utilities in bind9.18-utils package.
MPL-2.0 AND ISC AND MIT AND BSD-3-Clause AND BSD-2-Clause
* Thu Aug 27 2026 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-25
- Remove downstream introduced double-free (CVE-2026-5950)
* Wed Aug 19 2026 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-24
- Avoid unbounded recursion loop (CVE-2026-5950)
- Limit overlapping addresses resolver usage (CVE-2026-3592)
* Sat Jul 25 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 32:9.18.29-23
- Fix NSEC3 signer validation (CVE-2026-10723)
* Fri Jul 24 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 32:9.18.29-22
- Reject out-of-zone NSEC next owner names (CVE-2026-13321)
* Thu Jul 23 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 32:9.18.29-21
- Fix cache exhaustion via dns_slabheaders (CVE-2026-11622)
* Thu Jul 23 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 32:9.18.29-20
- Reject invalid signed wildcard records (CVE-2026-11721)
* Thu Jul 23 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 32:9.18.29-19
- Fix RPZ wildcard expansion self-referential CNAME (CVE-2026-11331)
* Thu Jul 23 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 32:9.18.29-18
- Fix assertion crash via unsigned NSEC/NSEC3 (CVE-2026-13204,
RHEL-213495)
* Mon May 25 2026 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-17
- Fix GSS-API resource leak (CVE-2026-3039)
- Invalid handling of CLASS != IN (CVE-2026-5946)
* Fri Mar 27 2026 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-16
- Prevent Denial of Service via maliciously crafted DNSSEC-validated zone
(CVE-2026-1519)
- Correct backport issue in the patch (CVE-2026-1519)
* Thu Feb 26 2026 Fedor Vorobev <fvorobev@redhat.com> - 32:9.18.29-15
- Backport fixes for stale CNAME chains. (RHEL-86172)
* Fri Jan 30 2026 Fedor Vorobev <fvorobev@redhat.com> - 32:9.18.29-14
- Backport fix for manual DNSSEC key rolllovers. (RHEL-144422)
* Thu Jan 29 2026 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-13
- Correct changelog version of previous change
* Wed Jan 28 2026 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-12
- Add forgotten _libdir/named into bind-chroot tmpfiles (RHEL-132053)
* Fri Dec 12 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-11
- Add sysusers named user creation (RHEL-132053)
* Fri Dec 12 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-10
- Add missing bind-chroot subdirectories
* Fri Dec 12 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-9
- Create /var/named directories for bind-chroot (RHEL-132053)
* Fri Oct 31 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-8
- Copy named.* files from /usr/share/named into var/named
* Fri Oct 31 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-7
- Fix upstream reported regression in recent CVE fix (CVE-2025-8677)
- Add upstream created test to this regression
* Thu Oct 23 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-6
- Refuse malformed DNSKEY records (CVE-2025-8677)
- Address various spoofing attacks (CVE-2025-40778)
- Prevent cache poisoning due to weak PRNG (CVE-2025-40780)
* Fri Sep 12 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-5
- logrotate: skip if empty and remove old variants (RHEL-113942)
* Tue Jun 10 2025 Petr Mensik <pemensik@redhat.com> - 32:9.18.29-4
- Prevent name.c:670 attributes assertion failed (RHEL-30407)
- Add extra checks for relative names
* Mon Feb 03 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-3
- Limit additional section records CPU processing (CVE-2024-11187)
- Read HTTPS requests in limited chunks and prevent overload (CVE-2024-12705)
* Mon Jan 27 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.29-2
- Backport nsupdate TLS support into 9.18 (RHEL-76331)
- Update nsupdate manual about new TLS options
- Test nsupdate TLS support
/usr/lib/.build-id /usr/lib/.build-id/05 /usr/lib/.build-id/05/f891a22694c587dadcdbbfe28643debb9843a7 /usr/lib/.build-id/06 /usr/lib/.build-id/06/92cd7036c6be8247abcd515c38baf8f159936d /usr/lib/.build-id/31 /usr/lib/.build-id/31/e76edf7e2fc00fa13a04e13c2bf9545b9929c1 /usr/lib/.build-id/41 /usr/lib/.build-id/41/0cd01e838800a08d9a88f183f3083c2914e185 /usr/lib/.build-id/57 /usr/lib/.build-id/57/ed8f0d69bd63ec9906353dd964596dcabd5a0d /usr/lib/.build-id/84 /usr/lib/.build-id/84/dcee8643ad908930ba5222f06f8e1906df2c00 /usr/lib/.build-id/f8 /usr/lib/.build-id/f8/26edbe65115e16cec3d22e4aa5825051765a48 /usr/lib64/libbind9-9.18.29.so /usr/lib64/libdns-9.18.29.so /usr/lib64/libirs-9.18.29.so /usr/lib64/libisc-9.18.29.so /usr/lib64/libisccc-9.18.29.so /usr/lib64/libisccfg-9.18.29.so /usr/lib64/libns-9.18.29.so /usr/share/licenses/bind9.18-libs /usr/share/licenses/bind9.18-libs/COPYRIGHT
Generated by rpm2html 1.8.1
Fabrice Bellet, Thu Sep 3 06:11:47 2026