Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
197

Debian LTS: Unbound Critical Cache Poisoning Vulnerability DLA-4365-1

Yuxiao Wu, Yunyi Zhang, Baojun Liu and Haixin Duan discovered that unbound, a validating, recursive, and caching DNS resolver, was vulnerable to cache poisoning via NS RRSet injection, which could lead to domain hijack. . ------------------------------------------------------------------------- Debian LTS Advisory DLA-4365-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Guilhem Moulin November 05, 2025 https://wiki.debian.org/LTS ------------------------------------------------------------------------- Package : unbound Version : 1.13.1-1+deb11u6 CVE ID : CVE-2025-11411 Yuxiao Wu, Yunyi Zhang, Baojun Liu and Haixin Duan discovered that unbound, a validating, recursive, and caching DNS resolver, was vulnerable to cache poisoning via NS RRSet injection, which could lead to domain hijack. Promiscuous NS RRSets that complement DNS replies in the authority section can be used to trick resolvers to update their delegation information for the zone. Usually these RRSets are used to update the resolver's knowledge of the zone's name servers. A malicious actor who is able to attach such records in a reply (i.e., spoofed packet, fragmentation attack) can poison Unbound's cache for the delegation point. The fix scrubs unsolicited NS RRSets (and their respective address records) from replies, thereby mitigating the possible poison effect. The protection can be turned off by setting the new configuration option "iter-scrub-promiscuous" to "no", see unbound.conf(5). For Debian 11 bullseye, this problem has been fixed in version 1.13.1-1+deb11u6. We recommend that you upgrade your unbound packages. For the detailed security status of unbound please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/unbound Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at:https://wiki.debian.org/LTS . Unbound DNS resolver vulnerable to cache poisoning; upgrade recommended for Debian 11 users for security.. unbound security update, Debian LTS, cache poisoning, domain hijack, DNS resolver. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Nov 05, 2025 Critical Debian LTS
172

Ubuntu 25.10: Unbound Important Domain Hijack Vulnerability USN-7855-1

Unbound could be made to hijack domains if it received specially crafted network traffic.. ========================================================================== Ubuntu Security Notice USN-7855-1 November 04, 2025 unbound vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 25.10 - Ubuntu 25.04 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: Unbound could be made to hijack domains if it received specially crafted network traffic. Software Description: - unbound: validating, recursive, caching DNS resolver Details: Yuxiao Wu, Yunyi Zhang, Baojun Liu, and Haixin Duan discovered that Unbound incorrectly handled certain promiscuous NS RRSets. A remote attacker could possibly use this issue to perform a domain hijack attack. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 25.10 libunbound8 1.22.0-2ubuntu2.1 unbound 1.22.0-2ubuntu2.1 Ubuntu 25.04 libunbound8 1.22.0-1ubuntu1.2 unbound 1.22.0-1ubuntu1.2 Ubuntu 24.04 LTS libunbound8 1.19.2-1ubuntu3.6 unbound 1.19.2-1ubuntu3.6 Ubuntu 22.04 LTS libunbound8 1.13.1-1ubuntu5.13 unbound 1.13.1-1ubuntu5.13 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7855-1 CVE-2025-11411 Package Information: . Unbound on Ubuntu could be exploited to hijack domains via crafted network traffic. Update recommended.. Unbound Update, Ubuntu Security, Domain Hijack, DNS Resolver, Important Security Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Nov 04, 2025 Important Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here