RHSA-2022:7790: Moderate: bind security update
The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly.Security Fix(es): bind: DNS forwarders - cache poisoning vulnerability (CVE-2021-25220) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Additional Changes:For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.7 Release Notes linked from the References section.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/bindto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-chrootto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-debugsourceto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-develto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-export-develto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-export-libsto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-export-libs-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-libsto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-libs-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-libs-liteto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-libs-lite-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-licenseto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-lite-develto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-pkcs11to a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-pkcs11-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-pkcs11-develto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-pkcs11-libsto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-pkcs11-libs-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-pkcs11-utilsto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-pkcs11-utils-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-sdbto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-sdb-chrootto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-sdb-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-utilsto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bind-utils-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/python3-bindto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8 - Upgrade
Upgrade
redhat/bindto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-chrootto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-debugsourceto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-develto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-export-develto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-export-libsto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-export-libs-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-libsto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-libs-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-libs-liteto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-libs-lite-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-lite-develto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-pkcs11to a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-pkcs11-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-pkcs11-develto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-pkcs11-libsto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-pkcs11-libs-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-pkcs11-utilsto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-pkcs11-utils-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-sdbto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-sdb-chrootto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-sdb-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-utilsto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa - Upgrade
Upgrade
redhat/bind-utils-debuginfoto a version that resolves this vulnerability.Fixed in 9.11.36-5.el8.aa
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:7790?
The severity of RHSA-2022:7790 is classified as important.
How do I fix RHSA-2022:7790?
To fix RHSA-2022:7790, you should update to bind version 9.11.36-5.el8 or later.
Which software is affected by RHSA-2022:7790?
RHSA-2022:7790 affects several packages including bind, bind-debuginfo, and bind-libs among others.
What vulnerabilities does RHSA-2022:7790 address?
RHSA-2022:7790 addresses vulnerabilities in the Berkeley Internet Name Domain (BIND) related to improper validation.
Is there any specific version to upgrade for RHSA-2022:7790?
Yes, you should upgrade to version 9.11.36-5.el8 to mitigate the issues reported in RHSA-2022:7790.