The DNSBomb attack, via specially timed DNS queries and answers, can cause a Denial of Service on resolvers and spoofed targets. Unbound itself is not vulnerable for DoS, rather it can be used to take part in a pulsing DoS amplification attack.
Created unbound tracking bugs for this issue: Affects: fedora-all [bug 2279944]
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:18556 https://access.redhat.com/errata/RHSA-2026:18556
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:18931 https://access.redhat.com/errata/RHSA-2026:18931