Alerts This Week
Warning Icon 1 548
Alerts This Week
Warning Icon 1 548

Fedora 43 bind-dyndb-ldap Important DoS Resource Leak Fix 2026-b626e83a45

fedora
Calendar Grey May 26, 2026
Dist Fedora Esm H88
Fedora 43 bind-dyndb-ldap update 2026-b626e83a45 with critical security fixes for multiple issues.
Update to 9.18.49 (rhbz#2480121) Security Fixes: Limit resolver server list size

Summary

This package provides an LDAP back-end plug-in for BIND. It features

support for dynamic updates and internal caching, to lift the load

off of your LDAP server.

Update Information:

Update to 9.18.49 (rhbz#2480121) Security Fixes: Limit resolver server list size. (CVE-2026-3592) Fix GSS-API resource leak. (CVE-2026-3039) Disable recursion, UPDATE, and NOTIFY for non-IN views. (CVE-2026-5946) Avoid unbounded recursion loop. (CVE-2026-5950) Fix outgoing zone transfers' quota issue. Feature Changes: Fix CPU spikes and slow queries when cache approaches memory limit. Bug Fixes: Fix named crash when processing SIG records in dynamic updates. Fix rndc modzone behavior for a zone in named.conf. Fix zone verification of NSEC3 signed zones. Prevent a crash when using both dns64 and filter-aaaa. Fixed an assertion failure when processing catalog zones. Prevent malicious DNSSEC zones from exhausting validator CPU. Fix rndc-confgen aborting on HMAC-SHA-384/512 keys above 512 bits. Prevent crafted queries from degrading RRL performance. Fix a bug in allow-query/allow-transfer catalog zone custom properties. Fix a memory leak issue in catalog zones. Fix suppressed missing-gl...

Change Log

* Wed May 20 2026 Petr Men\u0161k - 11.11-13 - Rebuilt for BIND 9.18.49 (rhbz#2480121)

References


[ 1 ] Bug #2480121 - bind-9.18.49 is available https://bugzilla.redhat.com/show_bug.cgi?id=2480121

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-b626e83a45' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: bind-dyndb-ldap
Product: Fedora 43
Version: 11.11
Release: 13.fc43
Summary: LDAP back-end plug-in for BIND

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here