We are pleased to announce the release of version 1.24.2 of the Unbound recursive resolver.

This security release provides an additional fix for CVE-2025-11411, that scrubs unsolicited NS RRSets (and their respective address records) from YXDOMAIN and non-referral nodata replies as well, mitigating the possible poison effect.

For more information on this security release, the earlier fix and the vulnerability itself, please read the announcement.

nlnetlabs.nl/news/2025/Nov/26/

0

If you have a fediverse account, you can quote this note from your own instance. Search https://social.nlnetlabs.nl/users/nlnetlabs/statuses/115615692665541082 on your instance and quote it. (Note that quoting is not supported in Mastodon.)