Bug 2405827 (CVE-2025-40778)

Summary: CVE-2025-40778 bind: Cache poisoning attacks with unsolicited RRs
Product: [Other] Security Response Reporter: OSIDB Bzimport <bzimport>
Component: vulnerabilityAssignee: Product Security DevOps Team <prodsec-dev>
Status: NEW --- QA Contact:
Severity: high Docs Contact:
Priority: high    
Version: unspecifiedCC: leif, michael.h.hall-1, pemensik, rhodain, svein.olav.bjerkeset, tony
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: ---
Doc Text:
A vulnerability exists in BIND’s DNS resolver logic that makes it overly permissive when accepting resource records (RRs) in responses. Under certain conditions, this flaw allows attackers to inject unsolicited or forged DNS records into the cache. This can be exploited to poison the resolver cache, redirecting clients to malicious domains or unauthorized servers.
Story Points: ---
Clone Of: Environment:
Last Closed: Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 2394406, 2405831, 2405832, 2405833, 2405834    
Bug Blocks: 2406399    

Description OSIDB Bzimport 2025-10-22 15:09:10 UTC
Under certain circumstances, BIND is too lenient when accepting records from answers, allowing an attacker to inject forged data into the cache.

Comment 5 errata-xmlrpc 2025-11-05 11:51:22 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2025:19793 https://access.redhat.com/errata/RHSA-2025:19793

Comment 6 errata-xmlrpc 2025-11-06 01:39:40 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2025:19835 https://access.redhat.com/errata/RHSA-2025:19835

Comment 7 errata-xmlrpc 2025-11-06 15:39:25 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 10

Via RHSA-2025:19912 https://access.redhat.com/errata/RHSA-2025:19912

Comment 8 errata-xmlrpc 2025-11-10 02:34:16 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2025:19950 https://access.redhat.com/errata/RHSA-2025:19950

Comment 9 errata-xmlrpc 2025-11-10 02:42:19 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2025:19951 https://access.redhat.com/errata/RHSA-2025:19951

Comment 11 errata-xmlrpc 2025-11-11 19:48:30 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 10

Via RHSA-2025:21034 https://access.redhat.com/errata/RHSA-2025:21034

Comment 12 errata-xmlrpc 2025-11-12 10:34:58 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2025:21111 https://access.redhat.com/errata/RHSA-2025:21111

Comment 13 errata-xmlrpc 2025-11-12 10:38:48 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2025:21110 https://access.redhat.com/errata/RHSA-2025:21110

Comment 15 errata-xmlrpc 2025-11-19 03:54:25 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions
  Red Hat Enterprise Linux 8.8 Telecommunications Update Service

Via RHSA-2025:21735 https://access.redhat.com/errata/RHSA-2025:21735

Comment 16 errata-xmlrpc 2025-11-19 05:15:11 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support
  Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions
  Red Hat Enterprise Linux 8.6 Telecommunications Update Service

Via RHSA-2025:21736 https://access.redhat.com/errata/RHSA-2025:21736

Comment 17 errata-xmlrpc 2025-11-19 06:15:32 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.2 Advanced Update Support

Via RHSA-2025:21741 https://access.redhat.com/errata/RHSA-2025:21741

Comment 18 errata-xmlrpc 2025-11-19 06:22:33 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support
  Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On

Via RHSA-2025:21740 https://access.redhat.com/errata/RHSA-2025:21740

Comment 19 errata-xmlrpc 2025-11-20 07:56:40 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.4 Extended Update Support

Via RHSA-2025:21817 https://access.redhat.com/errata/RHSA-2025:21817

Comment 20 errata-xmlrpc 2025-11-20 20:42:53 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions

Via RHSA-2025:21887 https://access.redhat.com/errata/RHSA-2025:21887

Comment 21 errata-xmlrpc 2025-11-20 21:08:53 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions

Via RHSA-2025:21889 https://access.redhat.com/errata/RHSA-2025:21889

Comment 22 errata-xmlrpc 2025-11-24 10:32:17 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions
  Red Hat Enterprise Linux 8.8 Telecommunications Update Service

Via RHSA-2025:21939 https://access.redhat.com/errata/RHSA-2025:21939

Comment 23 errata-xmlrpc 2025-11-26 07:23:52 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support
  Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions
  Red Hat Enterprise Linux 8.6 Telecommunications Update Service

Via RHSA-2025:22168 https://access.redhat.com/errata/RHSA-2025:22168

Comment 24 errata-xmlrpc 2025-11-26 21:30:37 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 7 Extended Lifecycle Support

Via RHSA-2025:22205 https://access.redhat.com/errata/RHSA-2025:22205

Comment 25 errata-xmlrpc 2025-12-17 00:12:17 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 6 Extended Lifecycle Support  - EXTENSION

Via RHSA-2025:23414 https://access.redhat.com/errata/RHSA-2025:23414

Comment 29 errata-xmlrpc 2026-01-14 13:24:17 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.20

Via RHSA-2026:0420 https://access.redhat.com/errata/RHSA-2026:0420

Comment 30 errata-xmlrpc 2026-01-15 05:11:20 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.12

Via RHSA-2026:0316 https://access.redhat.com/errata/RHSA-2026:0316

Comment 31 errata-xmlrpc 2026-01-15 18:46:21 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.16

Via RHSA-2026:0326 https://access.redhat.com/errata/RHSA-2026:0326

Comment 32 errata-xmlrpc 2026-01-15 18:55:07 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.18

Via RHSA-2026:0332 https://access.redhat.com/errata/RHSA-2026:0332

Comment 33 errata-xmlrpc 2026-01-21 20:22:01 UTC
This issue has been addressed in the following products:

  RHOSS-1.36-RHEL-8

Via RHSA-2026:0934 https://access.redhat.com/errata/RHSA-2026:0934

Comment 34 errata-xmlrpc 2026-01-22 19:07:47 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.17

Via RHSA-2026:0702 https://access.redhat.com/errata/RHSA-2026:0702

Comment 35 errata-xmlrpc 2026-01-22 20:16:56 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.13

Via RHSA-2026:0677 https://access.redhat.com/errata/RHSA-2026:0677

Comment 36 errata-xmlrpc 2026-01-22 20:17:50 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.19

Via RHSA-2026:0674 https://access.redhat.com/errata/RHSA-2026:0674

Comment 37 errata-xmlrpc 2026-01-30 14:19:38 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.14

Via RHSA-2026:0996 https://access.redhat.com/errata/RHSA-2026:0996

Comment 38 errata-xmlrpc 2026-02-05 16:24:35 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.15

Via RHSA-2026:1541 https://access.redhat.com/errata/RHSA-2026:1541