Cache poisoning via insufficient RRSIG.Labels validation and premature cache writes
Summary
Cache poisoning via insufficient RRSIG.Labels validation and premature cache writes. Red Hat rates this important (CVSS 8.6). Red Hat lists fixing advisory RHSA-2026:43588 with package unbound-main-1.25.2-0.1.hum1.
What this means
In plain English
Cache poisoning via insufficient RRSIG.Labels validation and premature cache writes. Red Hat rates this important (CVSS 8.6). Red Hat lists fixing advisory RHSA-2026:43588 with package unbound-main-1.25.2-0.1.hum1.
Recommended action
Primary action: update to a vendor-listed fixed release: unbound-main-1.25.2-0.1.hum1, RHSA-2026:43588.
Rewritten locally from the scraped official advisory data above; no generative API is used. The vendor advisory is authoritative.
Affected versions
No affected-version range was extracted from the source record. The vendor advisory is authoritative — check it before change work.
Official advisory · high-confidence parse· fetched 2 hours ago·verify at source
- unbound-main-1.25.2-0.1.hum1
- RHSA-2026:43588
Official advisory · high-confidence parse· fetched 2 hours ago·verify at source
Mitigation
Upgrade to a fixed release: unbound-main-1.25.2-0.1.hum1, RHSA-2026:43588. That is the remediation for this advisory.
The vendor advisory may list additional interim mitigations or workarounds not captured here — review it before change work.
Official advisory · high-confidence parse· fetched 2 hours ago·verify at source
Discussion(0)
No comments yet. Share field notes, upgrade gotchas, or questions — verify against the vendor advisory before acting on community advice.
Sign in to join the discussion.