Red Hat Product Errata RHSA-2026:15890 - Security Advisory Issued: 2026-05-11 Updated: 2026-05-11 RHSA-2026:15890 - Security Advisory Overview Updated Packages Synopsis Important: bind security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for bind is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Red Hat Enterprise Linux 8.8 Telecommunications Update Service. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly. Security Fix(es): bind: BIND: Denial of Service via maliciously crafted DNSSEC-validated zone (CVE-2026-1519) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 x86_64 Red Hat Enterprise Linux Server - TUS 8.8 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 x86_64 Fixes BZ - 2451305 - CVE-2026-1519 bind: BIND: Denial of Service via maliciously crafted DNSSEC-validated zone CVEs CVE-2026-1519 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 SRPM bind-9.11.36-8.el8_8.9.src.rpm SHA-256: 797e7a924625a5410739ab78c5761fb330d5755ad064c091a53f72786ff6b803 x86_64 bind-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: b5b7829482523b6f0ea461c24fafb54cbcad39bfe7249323692ae84c3d0952f1 bind-chroot-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 1e58c9880873ab4b7f3e7defbc216c34df716d62e1c2575cc3b496dbc47e3beb bind-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 3fbac3f400c72dfe584371a1bd1c1a4f35f73a8a20158b14f1d62d0cbfce0419 bind-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 3fbac3f400c72dfe584371a1bd1c1a4f35f73a8a20158b14f1d62d0cbfce0419 bind-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 3ad8c75907e139afe0602b78e7ea02244a2e78e20954d1e703d96140744fb148 bind-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 3ad8c75907e139afe0602b78e7ea02244a2e78e20954d1e703d96140744fb148 bind-debugsource-9.11.36-8.el8_8.9.i686.rpm SHA-256: c41a1647397348d3510fa42d424db41b150ce2d9e0dfbb06b6e54b195bc3c86e bind-debugsource-9.11.36-8.el8_8.9.i686.rpm SHA-256: c41a1647397348d3510fa42d424db41b150ce2d9e0dfbb06b6e54b195bc3c86e bind-debugsource-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 3ae035f8d5e148b3ff8ba57a94406737c159f14620431c678335714933cf86b6 bind-debugsource-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 3ae035f8d5e148b3ff8ba57a94406737c159f14620431c678335714933cf86b6 bind-devel-9.11.36-8.el8_8.9.i686.rpm SHA-256: 5652410067d1f129ff180743bf46d4807a852043bbaa415d7078f97819803e07 bind-devel-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: b25315fcf2fd4cab4eee64435c7c2b3754ae11d9c3111f488a740c9e1605b7f7 bind-export-devel-9.11.36-8.el8_8.9.i686.rpm SHA-256: 6e14f7b50ff9bd03eae9bbf7a6a09e263c117a2717f037341648c777f12d317d bind-export-devel-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 785af1b681c39887129a5fe996578ded4b36ac1cf8d709089f1a07a86cc71717 bind-export-libs-9.11.36-8.el8_8.9.i686.rpm SHA-256: 0cab9f49dfc31a9f33dcd534403018314dad19b90f10b5ac16fbada9dc390487 bind-export-libs-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: e8b0452d3d3342402f95d20da9fe8c25a29e37d0ff7c5f65e6690366f2aa3e68 bind-export-libs-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 8a4eb8f842a531d4203d9ddbbd26553f68c35d800f871d30974d23f503a7816b bind-export-libs-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 8a4eb8f842a531d4203d9ddbbd26553f68c35d800f871d30974d23f503a7816b bind-export-libs-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 09b8aea881929f2f27027e7fb2c0ff08b80ae20664a8129e626e32d50385b7dc bind-export-libs-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 09b8aea881929f2f27027e7fb2c0ff08b80ae20664a8129e626e32d50385b7dc bind-libs-9.11.36-8.el8_8.9.i686.rpm SHA-256: 9ab85a3b25134a6277b4f489042369c94f1b1403b1cbd2c79932e3fe73a999df bind-libs-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 1a8d8b970dd1360e2a0c724b5c43b786d45f231d66bc9e75662a39a79a3f9907 bind-libs-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 4d5e43e38014ab9ce35f5056c12038cddccbd338cbd5aba5db6de2b049eaf69d bind-libs-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 4d5e43e38014ab9ce35f5056c12038cddccbd338cbd5aba5db6de2b049eaf69d bind-libs-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: ae8c67152cda642dfb2a5861baa5a809ec035d85f0c199f63298cdbfd028b1a0 bind-libs-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: ae8c67152cda642dfb2a5861baa5a809ec035d85f0c199f63298cdbfd028b1a0 bind-libs-lite-9.11.36-8.el8_8.9.i686.rpm SHA-256: 06010a7309fed28bf9360a102400446f81261a015ff10a1f8c0eb2a4915c13d9 bind-libs-lite-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 6c5eeb016eaed609b0d5b1a81c362edff7603e4ee6c1aa72728e946c3b3d6420 bind-libs-lite-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 33c7aecf08b68e73a5942ff5507e714e7631140bf9156eb157d0473570820c66 bind-libs-lite-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 33c7aecf08b68e73a5942ff5507e714e7631140bf9156eb157d0473570820c66 bind-libs-lite-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 0bd734d0cf53e6367396110a02ec1d09dac4a391ee67a1e33433731c35d3ccb4 bind-libs-lite-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 0bd734d0cf53e6367396110a02ec1d09dac4a391ee67a1e33433731c35d3ccb4 bind-license-9.11.36-8.el8_8.9.noarch.rpm SHA-256: 7f2af599dc57811e550d02b075ca516c142d0f61b093b010491d210ca21e0ca4 bind-lite-devel-9.11.36-8.el8_8.9.i686.rpm SHA-256: 6f0350a6c466dba3aa66ab2effe4633322b176e199f28a2e95ba8e2608c34501 bind-lite-devel-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 0b37dd5968c9e7d823763c1d85cd091289e5c149ea6c8f848628dec524958be2 bind-pkcs11-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 550d7ae006b66a929e0d34c49d96952bbc52c822d0a08dd2b39e81c20d36536b bind-pkcs11-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 33f9f93a03203df15041627a6615a1006b0d6380fdc6f4f09782986055c01102 bind-pkcs11-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 33f9f93a03203df15041627a6615a1006b0d6380fdc6f4f09782986055c01102 bind-pkcs11-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 1a72c04265f094b8af5b03042d7adac42e4774383eb1468ba9286602432eedea bind-pkcs11-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 1a72c04265f094b8af5b03042d7adac42e4774383eb1468ba9286602432eedea bind-pkcs11-devel-9.11.36-8.el8_8.9.i686.rpm SHA-256: 25f6a0369e29730ff66379e95a459e35e8302382139482bc5c27aed39dc8e039 bind-pkcs11-devel-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: c048134e99ff0eeec4f9c7bdd75598d10f3f635b7e13dc88ee5e1c5f362dde0b bind-pkcs11-libs-9.11.36-8.el8_8.9.i686.rpm SHA-256: b602db9f1c9c2fd1bd12abfdcf0939dbd8ea616a7d6b5db5fb40ce0d8ea496da bind-pkcs11-libs-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: d78a322f2792425e9a527b3bb078fc607ac87a0c3d578a65acf6e60a0ec0b5f5 bind-pkcs11-libs-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 419fd06bad50a4fab9fd58ca265a37f5698feeb89d3e457c8905ee7fe7b39949 bind-pkcs11-libs-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 419fd06bad50a4fab9fd58ca265a37f5698feeb89d3e457c8905ee7fe7b39949 bind-pkcs11-libs-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: e00f58a37d32916548106d44d8c56fe9d6fd38fcf4fe1acfcdb90a5004ac58fe bind-pkcs11-libs-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: e00f58a37d32916548106d44d8c56fe9d6fd38fcf4fe1acfcdb90a5004ac58fe bind-pkcs11-utils-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: e0984df08e0377e03b7d84dc524eb48d94f9c27518967bcc4adcea3b487e9d33 bind-pkcs11-utils-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 61fb9430fd189a727b6ab86f97e63f58b07508bfef08a60cf4626a9022a20341 bind-pkcs11-utils-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 61fb9430fd189a727b6ab86f97e63f58b07508bfef08a60cf4626a9022a20341 bind-pkcs11-utils-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 4b2ef0c66a18011ba13b69e22d9e3a1fd2ff56cab7ba4e83b30fd283eac022e3 bind-pkcs11-utils-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 4b2ef0c66a18011ba13b69e22d9e3a1fd2ff56cab7ba4e83b30fd283eac022e3 bind-sdb-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 81cb02cb8bda7dc3d2de9bbfe0147a28e47658dcb97651ef293cf443453e9741 bind-sdb-chroot-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 6ba97874a2961b98172c200ae2f2f27675d8c80b38a895c8f571b69f29967f9f bind-sdb-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: d38d34ce1a73b3399cd4618f5fe14c9c36d3c635dbb3af4d9a4388679dbf65d1 bind-sdb-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: d38d34ce1a73b3399cd4618f5fe14c9c36d3c635dbb3af4d9a4388679dbf65d1 bind-sdb-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 8645a6eb58dcb31557befc22abba2a25e88c95c1fa577eebb40cdc5b157adc98 bind-sdb-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 8645a6eb58dcb31557befc22abba2a25e88c95c1fa577eebb40cdc5b157adc98 bind-utils-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: bae40bd77b8c1a68419b946c8f1a7d811829b2386e46ab66f9479a6af48e2a11 bind-utils-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 48f64d85216eb2b48ef476cdfc360f39243d0d970e71fb24eb4aad20c0345c4e bind-utils-debuginfo-9.11.36-8.el8_8.9.i686.rpm SHA-256: 48f64d85216eb2b48ef476cdfc360f39243d0d970e71fb24eb4aad20c0345c4e bind-utils-debuginfo-9.11.36-8.el8_8.9.x86_64.rpm SHA-256: 9aaba3883da516ca534962205e89e8f710b3
A Denial of Service (DoS) vulnerability (CVE-2026-1519, CVSS 7.5 HIGH) in BIND allows remote attackers to crash the service via a maliciously crafted DNSSEC-validated zone. This security update, rated Important by Red Hat, affects BIND packages for specific Red Hat Enterprise Linux 8.8 Extended Update Support and Update Services for SAP/TUS channels. Administrators should apply the provided patch, which includes updated RPM packages (e.g., bind-9.11.36-8.el8_8.9), to remediate the issue.