Critical ldns Vulnerability in Ubuntu Allows Spoofed DNS Responses

Critical ldns Vulnerability in Ubuntu Allows Spoofed DNS Responses

First seen 18 Jun 2026, 18:24 UTC UbuntuLinuxsecurity 90% similarity 74.0

Article Content

Browse articles
ThreatCluster

A vulnerability in the ldns library affects Ubuntu systems, allowing remote attackers to inject arbitrary DNS responses due to improper validation of DNS responses when used as a stub resolver over UDP. Discovered by Pablo Ruiz, this issue impacts multiple Ubuntu LTS versions, including 26.04, 24.04, 22.04, 20.04, 18.04, and 16.04. Users are advised to update their systems to the latest package versions to mitigate the risk. The vulnerability poses a significant threat as it could facilitate various attacks, including phishing and man-in-the-middle attacks. Ubuntu Pro users have access to extended security maintenance for affected packages. A standard system update will address the vulnerability across all impacted versions. The issue is currently being monitored, and users are encouraged to take immediate action.

Key Points: • A critical vulnerability in the ldns library allows for spoofed DNS responses. • Affected Ubuntu versions include 26.04, 24.04, 22.04, 20.04, 18.04, and 16.04. • Users should update to the latest package versions to mitigate risks.

ThreatCluster AI How this analysis works

Timeline

2026-06-18
ldns vulnerability disclosed
Pablo Ruiz reported that ldns improperly validates DNS responses, allowing remote injection of arbitrary responses.
Linuxsecurity
2026-06-18
Ubuntu releases security notice USN-8449-1
Ubuntu issued a security notice detailing the ldns vulnerability and recommended updates for affected systems.
Ubuntu

Community

Browse all →

Tracked Entities in This Story