Re: [Buildroot] [PATCH 1/1] package/bind: security bump version to 9.20.26
Julien Olivain via buildroot <[email protected]>
| Newsgroups | net.busybox.buildroot |
|---|---|
| Message-ID | <[email protected]> |
On 23/07/2026 21:57, Bernd Kuhls wrote: > https://downloads.isc.org/isc/bind9/9.20.26/doc/arm/html/notes.html#notes-for-bind-9-20-26 > https://downloads.isc.org/isc/bind9/9.20.26/doc/arm/html/changelog.html > https://seclists.org/oss-sec/2026/q3/208 > > Fixes > > CVE-2026-10723: Incorrect acceptance of NSEC3 records > CVE-2026-10822: Key Record using PRIVATEDNS algorithm may lead to > unexpected exit > CVE-2026-11331: Potential wildcard CNAME RPZ policy bypass > CVE-2026-11605: Unnecessary validation of DNSSEC signed records > CVE-2026-11622: Potential memory usage beyond configured limits > CVE-2026-11721: Cache poisoning possible with label count discrepancy, > RRSIG, and wildcards > CVE-2026-12617: Record ordering based unexpected exit with CNAME or > DNAME > CVE-2026-13204: Unexpected exit in certain situations with NSEC and > NSEC3 both present > CVE-2026-13321: DNSSEC Validation Bypass via Out-of-Zone NSEC Next > Field > > Signed-off-by: Bernd Kuhls <[email protected]> Applied to master, thanks. _______________________________________________ buildroot mailing list [email protected] https://lists.buildroot.org/mailman/listinfo/buildroot