RHSA-2024:0977: Important: unbound security update
Important: unbound security update
Other sources
The unbound packages provide a validating, recursive, and caching DNS or DNSSEC resolver. Security Fix(es): bind9: KeyTrap - Extreme CPU consumption in DNSSEC validator (CVE-2023-50387) bind9: Preparing an NSEC3 closest encloser proof can exhaust CPU resources (CVE-2023-50868) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:0977?
The severity of RHSA-2024:0977 is classified as important.
How do I fix RHSA-2024:0977?
To fix RHSA-2024:0977, update the unbound packages to version 1.16.2-3.el9_3.1.
What vulnerabilities are addressed by RHSA-2024:0977?
RHSA-2024:0977 addresses extreme CPU consumption in the DNSSEC validator related to CVE-2023-50387.
Which Red Hat products are affected by RHSA-2024:0977?
Affected products include Red Hat Enterprise Linux for x86_64, IBM z Systems, ARM 64, Power little endian, and Red Hat CodeReady Linux Builder.
Is RHSA-2024:0977 a modern security update?
Yes, RHSA-2024:0977 is a contemporary security update related to recent vulnerabilities in the unbound packages.