Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Critical Cache Poisoning Advisory for Unbound Update 1.23.1 in Fedora 41

fedora
Calendar Grey August 6, 2025
Dist Fedora Esm H88
Fedora 41 introduces enhancements to the unbound DNS resolver, upgrading it to version 1.23.1, which mitigates the cache poisoning vulnerability.
Update to 1.23.1 (rhbz#2380450)

Summary

Unbound is a validating, recursive, and caching DNS(SEC) resolver.

The C implementation of Unbound is developed and maintained by NLnet

Labs. It is based on ideas and algorithms taken from a java prototype

developed by Verisign labs, Nominet, Kirei and ep.net.

Unbound is designed as a set of modular components, so that also

DNSSEC (secure DNS) validation and stub-resolvers (that do not run

as a server, but are linked into an application) are easily possible.

Update Information:

Update to 1.23.1 (rhbz#2380450)

Change Log

* Mon Jul 21 2025 Tomas Korbar - 1.23.1-1 - Update to 1.23.1 (rhbz#2380450)

References


[ 1 ] Bug #2381425 - CVE-2025-5994 unbound: Unbound Cache poisoning [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2381425

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-e262093d58' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: unbound
Product: Fedora 41
Version: 1.23.1
Release: 1.fc41
Summary: Validating, recursive, and caching DNS(SEC) resolver

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here