Threats Tagged 'cve-2025-11411'
View all threats tagged with 'cve-2025-11411'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-11411'
Click on any threat for detailed analysis and mitigation recommendations
0 Red Hat has issued a security advisory for the unbound DNS resolver packages addressing two vulnerabilities: CVE-2024-33655 (DNSBomb) and CVE-2025-11411 (domain hijacking via promiscuous records). These vulnerabilities affect Red Hat Enterprise Linux 9 versions from 9.0.0 up to and including 9.8 across multiple architectures. The update is rated as having a moderate security impact. Red Hat provides updated packages to fix these issues and recommends applying the update as detailed in their advisory. Join the discussion | GCVE Database | 05/19/2026, 13:52:39 UTC Added: 06/25/2026, 21:46:46 UTC |
0 Red Hat has issued a moderate severity security advisory for the unbound DNS resolver packages addressing two vulnerabilities: CVE-2024-33655 (DNSBomb) and CVE-2025-11411 (domain hijacking via promiscuous records). These vulnerabilities affect Red Hat Enterprise Linux 10 versions prior to 10.2 and related CodeReady Linux Builder packages. The update to unbound version 1.24.2-7.el10 includes fixes for these issues and disables TLS 1.2 by default. Users of affected versions should apply the update to mitigate these vulnerabilities. Join the discussion | GCVE Database | 05/19/2026, 09:14:14 UTC Added: 06/25/2026, 21:46:46 UTC |
0 This update for unbound fixes the following issues: Update to 1.24.1: - CVE-2025-11411: Fixed possible domain hijacking attack (bsc#1252525). Join the discussion | GCVE Database | 01/30/2026, 10:05:07 UTC Added: 06/27/2026, 22:08:14 UTC |
0 NLnet Labs Unbound versions up to and including 1.24.1 are vulnerable to domain hijack attacks via acceptance of unsolicited NS RRSets in DNS replies. Attackers can inject malicious NS RRSets to poison the resolver's delegation information. Version 1.24.1 introduced a fix that removes unsolicited NS RRSets from replies, and 1.24.2 further improves this by scrubbing such data from additional reply types. Join the discussion | CVE Database V5 | 10/22/2025, 12:28:02 UTC Added: 10/22/2025, 12:49:11 UTC |
Showing 1 to 4 of 4 results