Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Mageia 2020-0224: Moderate Risk of Unbound Amplification Issue

mageia
Calendar Grey May 24, 2020
Dist Mageia Esm H88
Revised unbound installations for Mageia address flaws leading to amplification issues and service interruptions.
Updated unbound packages fix security vulnerabilities: Unbound can be tricked into amplifying an incoming query into a large number of queries directed to a target (CVE-2020-12662...

Summary

Updated unbound packages fix security vulnerabilities:
Unbound can be tricked into amplifying an incoming query into a large number of queries directed to a target (CVE-2020-12662).
Malformed answers from upstream name servers can be used to make Unbound unresponsive (CVE-2020-12663).

References

- https://bugs.mageia.org/show_bug.cgi?id=26646

- https://nlnetlabs.nl/downloads/unbound/CVE-2020-12662_2020-12663.txt

- https://www.cve.org/CVERecord?id=CVE-2020-12662

- https://www.cve.org/CVERecord?id=CVE-2020-12663

Resolution

SRPMS

- 7/core/unbound-1.10.1-1.mga7

Publication date: 24 May 2020
URL: https://advisories.mageia.org/MGASA-2020-0224.html
Type: security
CVE: CVE-2020-12662, CVE-2020-12663

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here