Re: [Buildroot] [PATCH 1/1] package/bind: security bump version to 9.20.26

Julien Olivain via buildroot <[email protected]>
Newsgroups net.busybox.buildroot
Message-ID <[email protected]>
On 23/07/2026 21:57, Bernd Kuhls wrote:
> https://downloads.isc.org/isc/bind9/9.20.26/doc/arm/html/notes.html#notes-for-bind-9-20-26
> https://downloads.isc.org/isc/bind9/9.20.26/doc/arm/html/changelog.html
> https://seclists.org/oss-sec/2026/q3/208
> 
> Fixes
> 
> CVE-2026-10723: Incorrect acceptance of NSEC3 records
> CVE-2026-10822: Key Record using PRIVATEDNS algorithm may lead to 
> unexpected exit
> CVE-2026-11331: Potential wildcard CNAME RPZ policy bypass
> CVE-2026-11605: Unnecessary validation of DNSSEC signed records
> CVE-2026-11622: Potential memory usage beyond configured limits
> CVE-2026-11721: Cache poisoning possible with label count discrepancy, 
> RRSIG, and wildcards
> CVE-2026-12617: Record ordering based unexpected exit with CNAME or 
> DNAME
> CVE-2026-13204: Unexpected exit in certain situations with NSEC and 
> NSEC3 both present
> CVE-2026-13321: DNSSEC Validation Bypass via Out-of-Zone NSEC Next 
> Field
> 
> Signed-off-by: Bernd Kuhls <[email protected]>

Applied to master, thanks.
_______________________________________________
buildroot mailing list
[email protected]
https://lists.buildroot.org/mailman/listinfo/buildroot
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.