RHSA-2026:19752HighCVSS 8.1
Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update
🔗 CVE IDs covered (4)
📋 Description
CVE-2026-33278 — unbound: Unbound DNSSEC Validator Use-After-Free via Deep Copy Pointer Overwrite Leading to DoS and Possible Remote Code Execution CVE-2026-42944 — unbound: Heap overflow and crash with multiple nsid, cookie, padding EDNS options CVE-2026-42959 — unbound: Unbound DNSSEC Validator Denial of Service via Incorrect Write Offset Counter in Chase-Reply Messages CVE-2026-44608 — unbound: Unbound: Denial of Service due to locking inconsistency during RPZ XFR reload
🔗 References (8)
- selfhttps://access.redhat.com/errata/RHSA-2026:19752
- externalhttps://images.redhat.com/
- externalhttps://access.redhat.com/security/cve/CVE-2026-42959
- externalhttps://access.redhat.com/security/updates/classification/
- externalhttps://access.redhat.com/security/cve/CVE-2026-33278
- externalhttps://access.redhat.com/security/cve/CVE-2026-42944
- externalhttps://access.redhat.com/security/cve/CVE-2026-44608
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_19752.json