RHSA-2026:6935HighCVSS 8.6
Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update
🔗 CVE IDs covered (8)
📋 Description
CVE-2025-8677 — bind: Resource exhaustion via malformed DNSKEY handling CVE-2025-13878 — bind: bind: Denial of Service via corrupt or malicious record CVE-2025-40778 — bind: Cache poisoning attacks with unsolicited RRs CVE-2025-40780 — bind: Cache poisoning due to weak PRNG CVE-2026-1519 — bind: BIND: Denial of Service via maliciously crafted DNSSEC-validated zone CVE-2026-3104 — bind: BIND: Denial of Service via specially crafted domain query causing a memory leak CVE-2026-3119 — bind: BIND: Denial of Service via authenticated TKEY queries CVE-2026-3591 — bind: BIND: Unauthorized access due to use-after-return vulnerability in DNS query handling
🔗 References (12)
- selfhttps://access.redhat.com/errata/RHSA-2026:6935
- externalhttps://images.redhat.com/
- externalhttps://access.redhat.com/security/cve/CVE-2025-8677
- externalhttps://access.redhat.com/security/updates/classification/
- externalhttps://access.redhat.com/security/cve/CVE-2025-40780
- externalhttps://access.redhat.com/security/cve/CVE-2025-40778
- externalhttps://access.redhat.com/security/cve/CVE-2025-13878
- externalhttps://access.redhat.com/security/cve/CVE-2026-3591
- externalhttps://access.redhat.com/security/cve/CVE-2026-3119
- externalhttps://access.redhat.com/security/cve/CVE-2026-3104
- externalhttps://access.redhat.com/security/cve/CVE-2026-1519
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_6935.json