We are pleased to announce the release of version 1.24.2 of the Unbound recursive #DNS resolver.
This security release provides an additional fix for CVE-2025-11411, that scrubs unsolicited NS RRSets (and their respective address records) from YXDOMAIN and non-referral nodata replies as well, mitigating the possible poison effect.
For more information on this security release, the earlier fix and the vulnerability itself, please read the announcement.
https://nlnetlabs.nl/news/2025/Nov/26/unbound-1.24.2-released/
