-
Mon Sep 21 2026 Petr Menšík <pemensik@redhat.com> - 1.24.2-23
- Prevent heap corruption during CNAME synthesis (CVE-2026-82717)
-
Fri Sep 18 2026 Petr Menšík <pemensik@redhat.com> - 1.24.2-22
- Prevent heap buffer overflow during DNSSEC canonicalization
(CVE-2026-81634)
-
Fri Sep 18 2026 Petr Menšík <pemensik@redhat.com> - 1.24.2-21
- Prevent heap buffer overflow when digesting DNSKEY (CVE-2026-81642)
- Add unit test for the vulnerability too
-
Fri Aug 21 2026 Petr Menšík <pemensik@redhat.com> - 1.24.2-20
- Backport additional fix of locks during initialization
-
Wed Aug 19 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 1.24.2-19
- Fix CVE-2026-50252: prevent cache poisoning via shared ports
-
Wed Aug 05 2026 Fedor Vorobev <fvorobev@redhat.com> - 1.24.2-18
- Add unit tests for CVE-2026-{44690,55973}
-
Wed Aug 05 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 1.24.2-17
- Fix CVE-2026-55973: dns-error-reporting stack buffer overflow
-
Wed Aug 05 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 1.24.2-16
- Fix CVE-2026-44690 - Cross-zone wildcard cache poisoning
-
Wed Jun 24 2026 Fedor Vorobev <fvorobev@redhat.com> - 1.24.2-15
- Fix CVE-2026-42534: Jostle logic bypass degrades resolution performance
-
Wed Jun 24 2026 Fedor Vorobev <fvorobev@redhat.com> - 1.24.2-14
- Fix CVE-2026-41292: DoS via excessive EDNS options