NLnet Labs Issues Urgent Security Release for Unbound Resolver
ID: 8022d769-9cac-5b7b-a95f-e186f2fe4768
STIX ID: report--8022d769-9cac-5b7b-a95f-e186f2fe4768
Feed Name: securityonline.info
NLnet Labs released a security update for Unbound resolving multiple vulnerabilities—most critically CVE-2026-33278, a DNSSEC validation memory-management bug that can lead to unauthenticated remote code execution on affected Unbound versions (1.19.1–1.25.0). The advisory also fixes high-severity heap overflow and validator crash issues, plus several medium-severity cache-poisoning and performance-related flaws; administrators are urged to upgrade to 1.25.1 or apply patches and mitigations immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
