Description:
Possible domain hijacking via promiscuous records in the authority
section. (CVE-2025-11411).
Previous fixes for CVE-2025-11411 released with Unbound 1.24.1 were not
complete.
- https://bugs.mageia.org/show_bug.cgi?id=34785
- https://advisories.mageia.org/MGASA-2025-0273.html
- https://www.openwall.com/lists/oss-security/2025/11/26/4
- https://www.cve.org/CVERecord?id=CVE-2025-11411
- 9/core/unbound-1.24.2-1.mga9
Get the latest Linux and open source security news straight to your inbox.