RHSA-2026:71419: Critical: unbound security update
What it means
Red Hat ha rilasciato un aggiornamento di sicurezza critico per unbound, un resolver DNS. Le vulnerabilità includevano Remote Code Execution e Heap buffer overflow. L'aggiornamento è disponibile per Red Hat Enterprise Linux 10 e varianti. La patch è necessaria per mitigare i rischi di attacchi remoti.
Why it matters
Per le PMI italiane, unbound è spesso utilizzato in infrastrutture DNS. Le vulnerabilità potrebbero consentire attacchi remoti, compromettendo la disponibilità e la sicurezza dei servizi. L'aggiornamento è critico per evitare exploit potenziali.
Recommended actions
- Applicare immediatamente l'aggiornamento unbound-1.24.2-7.el10_2.6 per Red Hat Enterprise Linux 10
- Verificare la versione corrente di unbound su tutti i sistemi Linux in uso
- Configurare firewall per limitare l'accesso al servizio DNS
- Monitorare i log DNS per segnali di attacchi o comportamenti anomali
- Eseguire test di vulnerabilità per verificare la protezione del sistema
Potential operational benefits
- Riduzione della superficie esposta a attacchi remoti
- Miglioramento della sicurezza delle infrastrutture DNS
- Prevenzione di potenziali compromissioni del sistema
Translation in progress
The official content is available in the original language. The Italian version will be published once automated checks are complete.
Text acquired from the source
An update for unbound is now available for Red Hat Enterprise Linux 10. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
- Source
- Red Hat Security Advisories
- Publishing entity
- Red Hat Product Security
- Entity type
- vendor security
- Area
- Global
- Original language
- en · translation in preparation
- Publication
- 24/09/2026 12:23
- MITRE ATT&CK
- T1562.001, T1059.001
- Classification
- Critical