Security News

Cybersecurity news aggregator

🔄
HIGH Updates Red Hat Errata

RHSA-2026:23360: Important: bind9.16 security update

This Red Hat security update addresses two high-severity vulnerabilities (CVE-2026-3039 and CVE-2026-5946, both CVSS 7.5) in BIND 9.16. The flaws allow remote attackers to cause denial of service via memory exhaustion during GSS-API TKEY negotiation or via specially crafted DNS messages. Affected versions include BIND 9.16.0 through 9.16.50, and the fix is provided in the Red Hat update for bind9.16 version 9.16.23-0.22.el8_10.6.
Read Full Article →

Red Hat Product Errata RHSA-2026:23360 - Security Advisory Issued: 2026-06-04 Updated: 2026-06-04 RHSA-2026:23360 - Security Advisory Overview Updated Packages Synopsis Important: bind9.16 security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for bind9.16 is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly. Security Fix(es): bind: BIND 9 server memory exhaustion during GSS-API TKEY negotiation (CVE-2026-3039) bind: BIND: Denial of Service via specially crafted DNS messages (CVE-2026-5946) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 8 x86_64 Red Hat Enterprise Linux for IBM z Systems 8 s390x Red Hat Enterprise Linux for Power, little endian 8 ppc64le Red Hat Enterprise Linux for ARM 64 8 aarch64 Red Hat CodeReady Linux Builder for x86_64 8 x86_64 Red Hat CodeReady Linux Builder for Power, little endian 8 ppc64le Red Hat CodeReady Linux Builder for ARM 64 8 aarch64 Red Hat CodeReady Linux Builder for IBM z Systems 8 s390x Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 8.10 x86_64 Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 8.10 aarch64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 8.10 ppc64le Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 8.10 s390x Fixes BZ - 2479767 - CVE-2026-3039 bind: BIND 9 server memory exhaustion during GSS-API TKEY negotiation BZ - 2479771 - CVE-2026-5946 bind: BIND: Denial of Service via specially crafted DNS messages CVEs CVE-2026-3039 CVE-2026-5946 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 8 SRPM bind9.16-9.16.23-0.22.el8_10.6.src.rpm SHA-256: d0c5e26ec7a1481fa78470dfb0f9739cafdcd702ab7ad3ca9315e65ba5530346 x86_64 bind9.16-9.16.23-0.22.el8_10.6.x86_64.rpm SHA-256: b543a10a75829ffa398ef41e9ab9447f5307cc1bd4b785c7321dd23fce72cc4a bind9.16-chroot-9.16.23-0.22.el8_10.6.x86_64.rpm SHA-256: 41be50d56cd6502cd54d608574c148b5508f8d7b5c355b971eeb44ab631ec8dd bind9.16-debuginfo-9.16.23-0.22.el8_10.6.x86_64.rpm SHA-256: ce6d4fc0f24e48a9c67264ac1a347ffadd68d7178b80dc00d295a9858866a72f bind9.16-debugsource-9.16.23-0.22.el8_10.6.x86_64.rpm SHA-256: 2bd8e17698ca94be8512cab903efc698ba128393795df91f2febda44655a517c bind9.16-dnssec-utils-9.16.23-0.22.el8_10.6.x86_64.rpm SHA-256: 5fec2d3b835711132d99097f3325493d89578f26b02406ec8fbf0ae1e4b27a57 bind9.16-dnssec-utils-debuginfo-9.16.23-0.22.el8_10.6.x86_64.rpm SHA-256: 9834f1a86d9b8123b377a78d77bea561f03ba5b9b452445498278df6e8866d06 bind9.16-libs-9.16.23-0.22.el8_10.6.x86_64.rpm SHA-256: ccaf98dd67d1ec99962ad55718d7a35c2069b08b4a8c838c51108f09d4be4f1b bind9.16-libs-debuginfo-9.16.23-0.22.el8_10.6.x86_64.rpm SHA-256: 4f3baa6d6232cbb3753c2db11681bf55e34910c0042cb57490fe593945e0714a bind9.16-license-9.16.23-0.22.el8_10.6.noarch.rpm SHA-256: 3158b14975b59e9522b9c6078f90eab75e91ea2bcd107578b49624b6e4409ef9 bind9.16-utils-9.16.23-0.22.el8_10.6.x86_64.rpm SHA-256: 99e309d3442ef940f4d57e948f85e7f3d5de88554ec18eeb6033211679265beb bind9.16-utils-debuginfo-9.16.23-0.22.el8_10.6.x86_64.rpm SHA-256: a35cc2f4237f8fec39c2dfa8058af9f472f5c87454cb8f5e12a6b720fc50d058 python3-bind9.16-9.16.23-0.22.el8_10.6.noarch.rpm SHA-256: f181eef7edd77434b88033020157741a0dfb505e297679b233e99c58855e755e Red Hat Enterprise Linux for IBM z Systems 8 SRPM bind9.16-9.16.23-0.22.el8_10.6.src.rpm SHA-256: d0c5e26ec7a1481fa78470dfb0f9739cafdcd702ab7ad3ca9315e65ba5530346 s390x bind9.16-9.16.23-0.22.el8_10.6.s390x.rpm SHA-256: 84df5530f70aecf597ffbffb57415a4cc14ba1c9005f4fb0cd9b60e3a074cfbb bind9.16-chroot-9.16.23-0.22.el8_10.6.s390x.rpm SHA-256: 0d8524cb9405efad90b1a80ff7757c0386be8c1b315e21030f25af82da972dcb bind9.16-debuginfo-9.16.23-0.22.el8_10.6.s390x.rpm SHA-256: a50af7e2e349e17354507427207c78133e5e4dff2a00c1dae63843bddce39be2 bind9.16-debugsource-9.16.23-0.22.el8_10.6.s390x.rpm SHA-256: a6c7ad643f22d65fd3289e53635badc3bdf85500113fd0fd77f78dd3d8fa4ed7 bind9.16-dnssec-utils-9.16.23-0.22.el8_10.6.s390x.rpm SHA-256: 346f093cea535e61349311571f5d55385f118c895a94e4817bc696fd0f34ab2d bind9.16-dnssec-utils-debuginfo-9.16.23-0.22.el8_10.6.s390x.rpm SHA-256: 743d1aaad4ffc6dfa8180caa6cf88808e63419cf2d6d209e530a913e4d8474af bind9.16-libs-9.16.23-0.22.el8_10.6.s390x.rpm SHA-256: f3361134fb1e47ba3d7cf67138e5159e43df3d3d2b6cb2d23a843e1c13d3c36f bind9.16-libs-debuginfo-9.16.23-0.22.el8_10.6.s390x.rpm SHA-256: 6a8b9ea574a5b3603a498e4aa836eb802ac2345e689b63dc1e35f2e8d074a24d bind9.16-license-9.16.23-0.22.el8_10.6.noarch.rpm SHA-256: 3158b14975b59e9522b9c6078f90eab75e91ea2bcd107578b49624b6e4409ef9 bind9.16-utils-9.16.23-0.22.el8_10.6.s390x.rpm SHA-256: 52f487fba2a882e8b6a59b22c51d7e293faae286a6d825c3c84b5f457efdc956 bind9.16-utils-debuginfo-9.16.23-0.22.el8_10.6.s390x.rpm SHA-256: 77739aabe0b2c661f6758a16c35de281f128c25649f9e73f79a8d758d74b4ca9 python3-bind9.16-9.16.23-0.22.el8_10.6.noarch.rpm SHA-256: f181eef7edd77434b88033020157741a0dfb505e297679b233e99c58855e755e Red Hat Enterprise Linux for Power, little endian 8 SRPM bind9.16-9.16.23-0.22.el8_10.6.src.rpm SHA-256: d0c5e26ec7a1481fa78470dfb0f9739cafdcd702ab7ad3ca9315e65ba5530346 ppc64le bind9.16-9.16.23-0.22.el8_10.6.ppc64le.rpm SHA-256: 348d172e6336bfe249868f7faef5d20b6417ce36617534efbb95cb1527024102 bind9.16-chroot-9.16.23-0.22.el8_10.6.ppc64le.rpm SHA-256: 0afd88965061c57c8af721238cda31f37d80ff1ac346877e9555dd7067d65d41 bind9.16-debuginfo-9.16.23-0.22.el8_10.6.ppc64le.rpm SHA-256: 8215bc842fe48cf1e40e61f83b16d47f9412aea099903e30f9117f4bd7791e73 bind9.16-debugsource-9.16.23-0.22.el8_10.6.ppc64le.rpm SHA-256: 6a9dbb926e109bba2ed71c837f97802ce2a1c35b29370818b92dacf4e47df469 bind9.16-dnssec-utils-9.16.23-0.22.el8_10.6.ppc64le.rpm SHA-256: e8bd6414f121caca48c2149c6164f7f96d98e571681982eb76644852b8704adf bind9.16-dnssec-utils-debuginfo-9.16.23-0.22.el8_10.6.ppc64le.rpm SHA-256: c8789acc7722f8d03411f6a4a1b702d3b6db409faf3a8a83cae9f72cccc779e9 bind9.16-libs-9.16.23-0.22.el8_10.6.ppc64le.rpm SHA-256: 0a2809c5f296cafb9fa6fe5bf60b2b71b2bc30512d78b5cc5b51110cf440cfc8 bind9.16-libs-debuginfo-9.16.23-0.22.el8_10.6.ppc64le.rpm SHA-256: f7c3cd6e3e91742888c4ecd7b9c10817c037ee5344dbe7f047594f237e2f6035 bind9.16-license-9.16.23-0.22.el8_10.6.noarch.rpm SHA-256: 3158b14975b59e9522b9c6078f90eab75e91ea2bcd107578b49624b6e4409ef9 bind9.16-utils-9.16.23-0.22.el8_10.6.ppc64le.rpm SHA-256: 2bedfd69b1b927ea69be15de424521964637d69693c3c4ccdc544313a4b7166c bind9.16-utils-debuginfo-9.16.23-0.22.el8_10.6.ppc64le.rpm SHA-256: 1572a63cf109f97b2efa834a10eedde7f7b3e23ed7df13966d69b77568067de3 python3-bind9.16-9.16.23-0.22.el8_10.6.noarch.rpm SHA-256: f181eef7edd77434b88033020157741a0dfb505e297679b233e99c58855e755e Red Hat Enterprise Linux for ARM 64 8 SRPM bind9.16-9.16.23-0.22.el8_10.6.src.rpm SHA-256: d0c5e26ec7a1481fa78470dfb0f9739cafdcd702ab7ad3ca9315e65ba5530346 aarch64 bind9.16-9.16.23-0.22.el8_10.6.aarch64.rpm SHA-256: 5b9fc0ff377c3e4d4e29eec95c5e753fef595a94f6788fb17ec9dc6666c1a0da bind9.16-chroot-9.16.23-0.22.el8_10.6.aarch64.rpm SHA-256: 621263c818f77d313e2c66a3215f88a3b0664dcc29171a2f35060e46c9627c2b bind9.16-debuginfo-9.16.23-0.22.el8_10.6.aarch64.rpm SHA-256: adc13b89bcfd90b5a5113023134fc8af5c2d588ad61795a038b143421392a6f9 bind9.16-debugsource-9.16.23-0.22.el8_10.6.aarch64.rpm SHA-256: 4259c6fd97f1a34e27a87c774a844555de4ba6ef7fa20c67a37d9146f6a8e95b bind9.16-dnssec-utils-9.16.23-0.22.el8_10.6.aarch64.rpm SHA-256: 7429977c5b666fcf4a2a53f8b345702448bb5b9063b0fa40ae4688e61a4c5dcd bind9.16-dnssec-utils-debuginfo-9.16.23-0.22.el8_10.6.aarch64.rpm SHA-256: 1e11a5e640acf3f78da0c197bcf34de28bc25906630618283f8ac9b61f1d50e2 bind9.16-libs-9.16.23-0.22.el8_10.6.aarch64.rpm SHA-256: b432030dd19adff47faae22243f4af7f81489b17015787eae01ebf249de21717 bind9.16-libs-debuginfo-9.16.23-0.22.el8_10.6.aarch64.rpm SHA-256: 7a6384aa69cad58735cf6afedfa8ce28ef0855ea63aec0b3e6e466480401561b bind9.16-license-9.16.23-0.22.el8_10.6.noarch.rpm SHA-256: 3158b14975b59e9522b9c6078f90eab75e91ea2bcd107578b49624b6e4409ef9 bind9.16-utils-9.16.23-0.22.el8_10.6.aarch64.rpm SHA-256: 260203cdddce5f56b1b6d43e72be3649ac41acbb20c656ccf9f45e750b9be017 bind9.16-utils-debuginfo-9.16.23-0.22.el8_10.6.aarch64.rpm SHA-256: 78780ca9249a9b3f69197cca1122a117ae6e4c1b7e4e0789eb164fc3313b2154 python3-bind9.16-9.16.23-0.22.el8_10.6.noarch.rpm SHA-256: f181eef7edd77434b88033020157741a0dfb505e297679b233e99c58855e755e Red Hat CodeReady Linux Builder for x86_64 8 SRPM x86_64 bind9.16-debuginfo-9.16.23-0.22.el8_10.6.i686.rpm SHA-256: f7608af8610c53c93277dea2114933b0f249d25d348f0fd3edfec50092c8fa52 bind9.16-debuginfo-9.16.23-0.22.el8_10.6.x86_64.rpm SHA-256: ce6d4fc0f24e48a9c67264ac1a347ffadd68d7178b80dc00d295a9858866a72f bind9.16-debugsource-9.16.23-0.22.el8_10.6.i686.rpm SHA-256: f5be8a037d10b2aedbc1b4434891351ffd4669e65d0c5a4920e52d92f827c4e3 bind9.16-debugsource-9.16.23-0.22.el8_10.6.x86_64.rpm SHA-256: 2bd8e17698ca94be8512cab903efc698ba128393795df91f2feb

Share this article