The vendor explicitly identifies these products or versions as containing the fix.
- bind-main@aarch64 as a component of Red Hat Hardened Images
- bind-main@noarch as a component of Red Hat Hardened Images
- bind-main@src as a component of Red Hat Hardened Images
- bind-main@x86_64 as a component of Red Hat Hardened Images
- Summary
- A flaw was found in the BIND (Berkeley Internet Name Domain) DNS-over-HTTPS implementation. A remote attacker could send specially crafted HTTP/2 traffic to a DNS-over-HTTPS endpoint, leading to a use-after-free vulnerability. This could trigger memory corruption, potentially allowing the attacker to cause a denial of service or, in some cases, execute arbitrary code.
- Remediation
- For details on how to apply this update, which includes the changes described in this advisory, refer to: https://images.redhat.com/
