bind-9.18.41-1.fc44 bind-dyndb-ldap-11.11-8.fc44
- bind-9.18.41-1.fc44
- bind-dyndb-ldap-11.11-8.fc44
- DNSSEC validation fails if matching but invalid DNSKEY is found. (CVE-2025-8677)
- Address various spoofing attacks. (CVE-2025-40778)
- Cache-poisoning due to weak pseudo-random number generator. (CVE-2025-40780)
- Support for parsing HHIT and BRID records has been added.
- Deprecate the "tkey-domain" statement.
- Deprecate the "tkey-gssapi-credential" statement.
- Prevent spurious SERVFAILs for certain 0-TTL resource records.
- Missing DNSSEC information when CD bit is set in query.
https://downloads.isc.org/isc/bind9/9.18.41/doc/arm/html/notes.html#notes-for-bind-9-18-41