ELSA-2025-19951

ELSA-2025-19951 - bind security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2025-11-10

Description


[9.16.23-31.0.1]
- Fix warning when changing device file permissions [Orabug: 36518580]

[32:9.16.23-31.2]
- Replace downstream fixes with upstream changes

[32:9.16.23-31.1]
- Prevent cache poisoning due to weak PRNG (CVE-2025-40780)
- Address various spoofing attacks (CVE-2025-40778)


Related CVEs


CVE-2025-40778
CVE-2025-40780

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) bind-9.16.23-31.0.1.el9_6.2.src.rpm504644e0d644113bb3b1a6c341da2791369d0520d7f364cff92d0351e4452cfd-ol9_aarch64_appstream
bind-9.16.23-31.0.1.el9_6.2.src.rpm504644e0d644113bb3b1a6c341da2791369d0520d7f364cff92d0351e4452cfd-ol9_aarch64_codeready_builder
bind-9.16.23-31.0.1.el9_6.2.aarch64.rpm374d4e64c7b1b4c12186016d4e27939cf622f269933890481f91e6ac807c6c1b-ol9_aarch64_appstream
bind-chroot-9.16.23-31.0.1.el9_6.2.aarch64.rpm4ad861f2cc35a2ecc7997b24e7677d2f9211cda45dd731c12c92d6d9a97a51bb-ol9_aarch64_appstream
bind-devel-9.16.23-31.0.1.el9_6.2.aarch64.rpmdab65da48c9854bb4b1e86e0a0266282f2544c9a5bb60148312d01ee4d4f8246-ol9_aarch64_codeready_builder
bind-dnssec-doc-9.16.23-31.0.1.el9_6.2.noarch.rpme93135a91a95de6e8c389b4b7d56c400cf7bcb338c687e5ddea6ecf1e210e2ca-ol9_aarch64_appstream
bind-dnssec-utils-9.16.23-31.0.1.el9_6.2.aarch64.rpme2fd496742a8a773f9cfa6f77ce91e9c995319a94c0255ff39871fdd46b38a99-ol9_aarch64_appstream
bind-doc-9.16.23-31.0.1.el9_6.2.noarch.rpm71314a1b5da9e1b50e1fcde9a91479e730666cb312d19e5970eab21afbdf5e9a-ol9_aarch64_codeready_builder
bind-libs-9.16.23-31.0.1.el9_6.2.aarch64.rpmec156d94f3187fefe3aa70c4c96d883a7487183666e97ef40dc7845497730b02-ol9_aarch64_appstream
bind-license-9.16.23-31.0.1.el9_6.2.noarch.rpm41ab2fb04ea9263435834011c288ff3312cc8bb306b019901f9d226056a75398-ol9_aarch64_appstream
bind-utils-9.16.23-31.0.1.el9_6.2.aarch64.rpmeb3e7168d4bc85d529e1beb98b5580b0a8405b378f066d0b33b587b457781210-ol9_aarch64_appstream
python3-bind-9.16.23-31.0.1.el9_6.2.noarch.rpme358533b8d3dd2c9d3d30e3931f98371e09d8f1f4cb87d2f0eedf3105812b03a-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) bind-9.16.23-31.0.1.el9_6.2.src.rpm504644e0d644113bb3b1a6c341da2791369d0520d7f364cff92d0351e4452cfd-ol9_x86_64_appstream
bind-9.16.23-31.0.1.el9_6.2.src.rpm504644e0d644113bb3b1a6c341da2791369d0520d7f364cff92d0351e4452cfd-ol9_x86_64_codeready_builder
bind-9.16.23-31.0.1.el9_6.2.x86_64.rpm0ebd9ac0b78eaffdfe8054860f3209e8aae867bfa2e1bfb4ceebe79c4a60e748-ol9_x86_64_appstream
bind-chroot-9.16.23-31.0.1.el9_6.2.x86_64.rpmb088265ec9f849c04f56d74b6db980f3ece9501c252282f469761f475702aa5b-ol9_x86_64_appstream
bind-devel-9.16.23-31.0.1.el9_6.2.i686.rpm5b08531b253fd7c1c006420bd92bbb96f08bcfd0acf40d3aa8eb4d8fff30df0e-ol9_x86_64_codeready_builder
bind-devel-9.16.23-31.0.1.el9_6.2.x86_64.rpmf3516e870515a1760e49a1b000313c89c5386c54f9439f2a5c3b95f162ef0804-ol9_x86_64_codeready_builder
bind-dnssec-doc-9.16.23-31.0.1.el9_6.2.noarch.rpme93135a91a95de6e8c389b4b7d56c400cf7bcb338c687e5ddea6ecf1e210e2ca-ol9_x86_64_appstream
bind-dnssec-utils-9.16.23-31.0.1.el9_6.2.x86_64.rpmc722fd4988853955b4c958428a94ec82dffaf789ecda6741b70180db03b2ae4c-ol9_x86_64_appstream
bind-doc-9.16.23-31.0.1.el9_6.2.noarch.rpm71314a1b5da9e1b50e1fcde9a91479e730666cb312d19e5970eab21afbdf5e9a-ol9_x86_64_codeready_builder
bind-libs-9.16.23-31.0.1.el9_6.2.i686.rpm2c136e7262778e4792eef09ba7a3f5b28138ee804b1ececf22c7f9545ad95d2c-ol9_x86_64_codeready_builder
bind-libs-9.16.23-31.0.1.el9_6.2.x86_64.rpmc89b78670cb28deedd76073ee50c22cd33d11c9b777be0927effac5c567f0ad2-ol9_x86_64_appstream
bind-license-9.16.23-31.0.1.el9_6.2.noarch.rpm41ab2fb04ea9263435834011c288ff3312cc8bb306b019901f9d226056a75398-ol9_x86_64_appstream
bind-utils-9.16.23-31.0.1.el9_6.2.x86_64.rpm27e6b0e214b4fa96bd887108847683e7154d68d609c9a7e8e7f7db27f97eeebc-ol9_x86_64_appstream
python3-bind-9.16.23-31.0.1.el9_6.2.noarch.rpme358533b8d3dd2c9d3d30e3931f98371e09d8f1f4cb87d2f0eedf3105812b03a-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete