Back Linuxsecurity Fedora 43 bind-dyndb-ldap Critical DoS Fix CVE-2025-13878 2026
This package provides an LDAP back-end plug-in for BIND. It features support for dynamic updates and internal caching, to lift the load off of your LDAP server. Update Information : Update to 9.18.44 (rhbz#2431609) Security Fixes: Fix incorrect length checks for BRID and HHIT records. (CVE-2025-13878) Bug Fixes: Allow glue in delegations with QTYPE=ANY. Reconfiguring an NSEC3 opt-out zone to NSEC caused the zone to be invalid. bind-9-18-44
This package provides an LDAP back-end plug-in for BIND. It features
support for dynamic updates and internal caching, to lift the load
off of your LDAP server.
Update to 9.18.44 (rhbz#2431609) Security Fixes: Fix incorrect length checks for BRID and HHIT records. (CVE-2025-13878) Bug Fixes: Allow glue in delegations with QTYPE=ANY. Reconfiguring an NSEC3 opt-out zone to NSEC caused the zone to be invalid. bind-9-18-44
* Thu Jan 22 2026 Petr Men\u0161k - 11.11-10 - Rebuilt for BIND 9.18.44 (rhbz#2431609)
* Thu Jan 22 2026 Petr Men\u0161k - 11.11-10 - Rebuilt for BIND 9.18.44 (rhbz#2431609)
[ 1 ] Bug #2431609 - bind-9.18.44 is available [ 2 ] Bug #2431925 - CVE-2025-13878 bind: bind: Denial of Service via corrupt or malicious record [fedora-43]
[ 1 ] Bug #2431609 - bind-9.18.44 is available [ 2 ] Bug #2431925 - CVE-2025-13878 bind: bind: Denial of Service via corrupt or malicious record [fedora-43]
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-567ff6c687' at the command line. For more information, refer to the dnf documentation available at
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
