REDHAT-BUG-1837604: High severity libunbound vulnerability
Unbound before 1.10.1 has an infinite loop via malformed DNS answers received from upstream servers.
References: http://www.openwall.com/lists/oss-security/2020/05/19/5 https://nlnetlabs.nl/downloads/unbound/CVE-2020-126622020-12663.txt
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1837604?
The severity of REDHAT-BUG-1837604 is considered critical due to the potential for an infinite loop from malformed DNS responses.
How do I fix REDHAT-BUG-1837604?
You can fix REDHAT-BUG-1837604 by upgrading to Unbound version 1.10.1 or later.
What are the consequences of not addressing REDHAT-BUG-1837604?
Not addressing REDHAT-BUG-1837604 may lead to a denial of service due to the endless loop caused by malicious DNS answers.
Which versions of Unbound are affected by REDHAT-BUG-1837604?
Unbound versions prior to 1.10.1 are affected by REDHAT-BUG-1837604.
How can I determine if my system is vulnerable to REDHAT-BUG-1837604?
You can determine your system's vulnerability to REDHAT-BUG-1837604 by checking the installed version of Unbound and comparing it to the known vulnerable versions.