| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: bind-dnssec-utils | Distribution: CentOS |
| Version: 9.16.50 | Vendor: CentOS |
| Release: 10.el9 | Build date: Mon Sep 7 16:27:49 2026 |
| Group: Unspecified | Build host: ppc64le-09.stream.rdu2.redhat.com |
| Size: 688543 | Source RPM: bind-9.16.50-10.el9.src.rpm |
| Packager: builder@centos.org | |
| Url: https://www.isc.org/downloads/bind/ | |
| Summary: DNSSEC keys and zones management utilities | |
Bind-dnssec-utils contains a collection of utilities for editing DNSSEC keys and BIND zone files. These tools provide generation, revocation and verification of keys and DNSSEC signatures in zone files. You should install bind-dnssec-utils if you need to sign a DNS zone or maintain keys for it.
MPLv2.0
* Mon Sep 07 2026 Petr Menšík <pemensik@redhat.com> - 32:9.16.50-10
- Rebuild to become part of regular release
* Wed Sep 02 2026 Petr Menšík <pemensik@redhat.com> - 32:9.16.50-9
- Add new root key 38696 into package files (RHEL-131890)
- Update built-in anchors in delv and named
* Fri Aug 14 2026 Fedor Vorobev <fvorobev@redhat.com> - 32:9.16.50-8
- Fix amplification vulnerability via self-pointed glue records (CVE-2026-3592)
* Fri Aug 14 2026 Fedor Vorobev <fvorobev@redhat.com> - 32:9.16.50-7
- Fix unbounded resend loop in resolver (CVE-2026-5950)
* Fri Aug 14 2026 Fedor Vorobev <fvorobev@redhat.com> - 32:9.16.50-6
- Fix NSEC3 signer validation (CVE-2026-10723)
- Fix reject out-of-zone NSEC next owner names (CVE-2026-13321)
- Fix RPZ name-too-long wildcard expansion (CVE-2026-11331)
- Fix dns_rdataset_addnoqname() accepting unsigned NSEC/NSEC3 (CVE-2026-13204)
- Fix dnssec-signzone and RRSIG wildcard validation (CVE-2026-11721)
- Prevent cache memory exhaustion under sustained attack (CVE-2026-11622)
* Thu Jul 23 2026 Fedor Vorobev <fvorobev@redhat.com> - 32:9.16.50-5
- Remove compile-time OpenSSL API version check that was preventing
bind from fetching the engine for RSA algorithms. (RHEL-213788)
* Mon Jul 20 2026 Fedor Vorobev <fvorobev@redhat.com> - 32:9.16.50-4
- Fix uninitialized boolean in dig/host downstream patch that was
leading to incorrectly canceled queries in certain scenarios. (RHEL-212648)
* Tue Jul 07 2026 Fedor Vorobev <fvorobev@redhat.com> - 32:9.16.50-3
- Added CNAME chain bugfixes from v9.18.
- Fixed masterformat, reclimit, resolver, and qmin tests.
* Tue Jul 07 2026 Petr Menšík <pemensik@redhat.com> - 32:9.16.50-2
- Use the distutils for python, for backward compatibility
* Tue Jul 07 2026 Petr Menšík <pemensik@redhat.com> - 32:9.16.50-1
- Update to 9.16.50 (RHEL-6454)
- Allow starting without inline-signing and dnssec-policy
* Mon May 25 2026 Petr Menšík <pemensik@redhat.com> - 32:9.16.23-44
- Fix GSS-API resource leak (CVE-2026-3039)
- Invalid handling of CLASS != IN (CVE-2026-5946)
* Fri Mar 27 2026 Petr Menšík <pemensik@redhat.com> - 32:9.16.23-43
- Prevent Denial of Service via maliciously crafted DNSSEC-validated zone
(CVE-2026-1519)
* Thu Feb 12 2026 Fedor Vorobev <fvorobev@redhat.com> - 32:9.16.23-42
- Backport fix of dig/nslookup hanging issue (RHEL-29712)
* Thu Jan 29 2026 Fedor Vorobev <fvorobev@redhat.com> - 32:9.16.23-41
- Backport fix for manual DNSSEC key rollovers. (RHEL-12487)
* Wed Jan 28 2026 Petr Menšík <pemensik@redhat.com> - 32:9.16.23-40
- Add forgotten _libdir/named into bind-chroot tmpfiles (RHEL-135629)
* Thu Jan 22 2026 Fedor Vorobev <fvorobev@redhat.com> - 32:9.16.23-39
- Backport fix for nameserver line processing. (RHEL-79714)
* Fri Dec 12 2025 Petr Menšík <pemensik@redhat.com> - 32:9.16.23-38
- Add sysusers named user creation (RHEL-132053)
* Fri Dec 12 2025 Petr Menšík <pemensik@redhat.com> - 32:9.16.23-37
- Create /var/named directories for bind-chroot (RHEL-132053)
* Wed Oct 29 2025 Petr Menšík <pemensik@redhat.com> - 32:9.16.23-36
- Copy named.* files from /var/named into /usr/share/named
* Wed Oct 29 2025 Petr Menšík <pemensik@redhat.com> - 32:9.16.23-35
- Prevent cache poisoning due to weak PRNG (CVE-2025-40780)
- Replace downstream fixes with upstream changes
- Address various spoofing attacks (CVE-2025-40778)
* Tue Sep 16 2025 Petr Menšík <pemensik@redhat.com> - 32:9.16.23-34
- Fix failures in idna system test (RHEL-66172)
* Fri Sep 12 2025 Petr Menšík <<pemensik@redhat.com>> - 32:9.16.23-33
- logrotate: skip if empty and remove old variants (RHEL-113942)
* Wed Sep 03 2025 Petr Menšík <pemensik@redhat.com> - 32:9.16.23-32
- Decode IDN names on input in all situations in utilities (RHEL-66172)
* Wed Jul 09 2025 Petr Menšík <pemensik@redhat.com> - 32:9.16.23-31
- Add runtime tunable limit by environment NAMED_MAXADDITIONAL (RHEL-84006)
* Fri Jun 20 2025 Petr Menšík <pemensik@redhat.com> - 32:9.16.23-30
- Change additional NS to be served partially (RHEL-84006)
* Tue Jun 10 2025 Petr Menšík <pemensik@redhat.com> - 32:9.18.23-29
- Prevent name.c:670 attributes assertion failed (RHEL-30407)
- Add extra checks for relative names
* Sat Feb 15 2025 Petr Menšík <pemensik@redhat.com> - 32:9.16.23-28
- Fix test backport changes
* Wed Feb 05 2025 Petr Menšík <pemensik@redhat.com> - 32:9.16.23-27
- Limit additional section records CPU processing (CVE-2024-11187)
* Wed Feb 05 2025 Petr Menšík <pemensik@redhat.com> - 32:9.16.23-26
- Switch to autopatch changes applying
/usr/lib/.build-id /usr/lib/.build-id/0b /usr/lib/.build-id/0b/8cf8115b6e522dc716bdf74cacb43cfd5be8a0 /usr/lib/.build-id/40 /usr/lib/.build-id/40/d3a76e604dc734d02c4a4936ba350d4befa656 /usr/lib/.build-id/5f /usr/lib/.build-id/5f/9b38e0b5eb0aba7e01127081bad3b0da32cfc4 /usr/lib/.build-id/a3 /usr/lib/.build-id/a3/c02c05a7d4a0dd1b267d98db02e8ac0e4eb990 /usr/lib/.build-id/c7 /usr/lib/.build-id/c7/805736db7ba9e7e3cb46971ad72079d276eca7 /usr/lib/.build-id/df /usr/lib/.build-id/df/5b5edace318d9b48078745ca152b12c930bdf7 /usr/lib/.build-id/fc /usr/lib/.build-id/fc/dbd5f81ed3ae23474187a3212e87f6b9f6dd42 /usr/lib/.build-id/fd /usr/lib/.build-id/fd/5f0f44b8d9ddfd3b0a5e745ad2e19c29f0e811 /usr/lib/.build-id/fe /usr/lib/.build-id/fe/2c7aa6db15b2239cded44da7db43b1da7c63fc /usr/sbin/dnssec-cds /usr/sbin/dnssec-checkds /usr/sbin/dnssec-coverage /usr/sbin/dnssec-dsfromkey /usr/sbin/dnssec-importkey /usr/sbin/dnssec-keyfromlabel /usr/sbin/dnssec-keygen /usr/sbin/dnssec-keymgr /usr/sbin/dnssec-revoke /usr/sbin/dnssec-settime /usr/sbin/dnssec-signzone /usr/sbin/dnssec-verify
Generated by rpm2html 1.8.1
Fabrice Bellet, Wed Sep 23 05:37:49 2026