Skip to content
SUSE bind Important DNS Cache Poisoning Fix Advisory 2026-3484

SUSE bind Important DNS Cache Poisoning Fix Advisory 2026-3484

Linuxsecurity LinuxSecurity Advisories August 4, 2026

Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges ×

## This update for bind fixes the following issues * CVE-2026-11622: Potential memory usage beyond configured limits (bsc#1271986). * CVE-2026-11721: Cache poisoning possible with label count discrepancy, RRSIG, and wildcards (bsc#1271987). * CVE-2026-13204: Unexpected exit in certain situations with NSEC and NSEC3 both present (bsc#1271989). * CVE-2026-13321: DNSSEC Validation Bypass via Out-of-Zone NSEC Field (bsc#1271990). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2026-3484=1

## This update for bind fixes the following issues * CVE-2026-11622: Potential memory usage beyond configured limits (bsc#1271986). * CVE-2026-11721: Cache poisoning possible with label count discrepancy, RRSIG, and wildcards (bsc#1271987). * CVE-2026-13204: Unexpected exit in certain situations with NSEC and NSEC3 both present (bsc#1271989). * CVE-2026-13321: DNSSEC Validation Bypass via Out-of-Zone NSEC Field (bsc#1271990). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2026-3484=1

* CVE-2026-11622 ( SUSE ): 8.7

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

* CVE-2026-11622 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

* CVE-2026-11622 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

* CVE-2026-11721 ( SUSE ): 8.7

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N

* CVE-2026-11721 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

* CVE-2026-11721 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

* CVE-2026-13204 ( SUSE ): 8.7

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Announcement ID: SUSE-SU-2026:3484-1 Release Date: 2026-08-04T11:52:47Z Rating: important

Get the latest Linux and open source security news straight to your inbox.