Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:12520 - Security Advisory
Issued:
2025-08-04
Updated:
2025-08-04

RHSA-2025:12520 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: unbound security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for unbound is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The unbound packages provide a validating, recursive, and caching DNS or DNSSEC resolver.

Security Fix(es):

  • unbound: Unbound Cache poisoning (CVE-2025-5994)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0 s390x

Fixes

  • BZ - 2380949 - CVE-2025-5994 unbound: Unbound Cache poisoning

CVEs

  • CVE-2025-5994

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0

SRPM
unbound-1.13.1-13.el9_0.5.src.rpm SHA-256: 899fbb84c2a8ab011fea3d4242c9d6f7d03f25a2ea1ffb6205b3be466898b2c7
ppc64le
python3-unbound-1.13.1-13.el9_0.5.ppc64le.rpm SHA-256: d44ca4fe638c0f87eea7254576a576795de63946532713067de1f68dc978fe58
python3-unbound-debuginfo-1.13.1-13.el9_0.5.ppc64le.rpm SHA-256: be59df0ebfc40e9a31f11db3e6b95d986898d233804462728bb525263eede500
unbound-1.13.1-13.el9_0.5.ppc64le.rpm SHA-256: fd0924ce20560e47f9b90c4daf25ff1f5ea005723d7996dce75b25ffc37b15f1
unbound-debuginfo-1.13.1-13.el9_0.5.ppc64le.rpm SHA-256: 5d4d7d638c6429c554261ba0fd51f1a83952ff814e9c1ac2e9b552a73f5011e6
unbound-debugsource-1.13.1-13.el9_0.5.ppc64le.rpm SHA-256: 3a4c1b1489190109aaf8dcc637d8523780c306b37063cca4a79f702741ff3137
unbound-libs-1.13.1-13.el9_0.5.ppc64le.rpm SHA-256: e9d221089883529b3241595cbf560e96846d2e40cb3e622d5bec31a8b284ffdb
unbound-libs-debuginfo-1.13.1-13.el9_0.5.ppc64le.rpm SHA-256: 870d9d439c670fd80bcc90900f9a6065978fd5976efbe01340a1bb2ecc77a0bb

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0

SRPM
unbound-1.13.1-13.el9_0.5.src.rpm SHA-256: 899fbb84c2a8ab011fea3d4242c9d6f7d03f25a2ea1ffb6205b3be466898b2c7
x86_64
python3-unbound-1.13.1-13.el9_0.5.x86_64.rpm SHA-256: 6118d7f12813766daa9c7cf12fc7ce92ef4ffbf35c5cf53ae87c622d74caa6a1
python3-unbound-debuginfo-1.13.1-13.el9_0.5.i686.rpm SHA-256: 9c32de2fe73f203b37ca3228495c65c9ec1814187d75f817e652da4554e9d4a4
python3-unbound-debuginfo-1.13.1-13.el9_0.5.x86_64.rpm SHA-256: 3ed553999b4c8a49ad87866c9e4cee71b2b4b41f0d8ae297287a5ca019ce219e
unbound-1.13.1-13.el9_0.5.x86_64.rpm SHA-256: 78c70ba2e740ae97e7a5a251ec0f2c0fc501aabb312b042ce5a7c0ff7907bb18
unbound-debuginfo-1.13.1-13.el9_0.5.i686.rpm SHA-256: e4f04ff407ff6bac2c37bb26e0ddf749c661591d6a25fd1d15c2759b4a098583
unbound-debuginfo-1.13.1-13.el9_0.5.x86_64.rpm SHA-256: 9b63a58d9d97c33e0421f206b14e3690fa7269cbd649ff3957742f93463abd28
unbound-debugsource-1.13.1-13.el9_0.5.i686.rpm SHA-256: bb22c061742397620980a0f47d1a097973b1770bb4594335f7b4085f3334c06c
unbound-debugsource-1.13.1-13.el9_0.5.x86_64.rpm SHA-256: 9f06979686aebcc1dc938f9cc64da2a927e7b17416f97b7dbaeeeadf6055c40a
unbound-libs-1.13.1-13.el9_0.5.i686.rpm SHA-256: 74b9620a78ee5599eba68c1db90caf70c3dcbab9cd36120f9e43e83f0bb18eb1
unbound-libs-1.13.1-13.el9_0.5.x86_64.rpm SHA-256: ab909b9878ae904213d1dede7ba537601b20f419d326c51addfc3d5f24ad705c
unbound-libs-debuginfo-1.13.1-13.el9_0.5.i686.rpm SHA-256: b2488511c4f83bae9a6487c5e2b8812d8daff1746bb12cf8403fa6ce1f36914f
unbound-libs-debuginfo-1.13.1-13.el9_0.5.x86_64.rpm SHA-256: 392d5baf4a631ac95db1d928131274d80b3554c7ec38b89a9af3c4b53d870834

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0

SRPM
unbound-1.13.1-13.el9_0.5.src.rpm SHA-256: 899fbb84c2a8ab011fea3d4242c9d6f7d03f25a2ea1ffb6205b3be466898b2c7
aarch64
python3-unbound-1.13.1-13.el9_0.5.aarch64.rpm SHA-256: d9ec572b79e450780d74a5615c14b9547a68f22f82caae12f95c3d9e80e62ed3
python3-unbound-debuginfo-1.13.1-13.el9_0.5.aarch64.rpm SHA-256: a687043c8bc50b0ed1169ee646db43a9b1eed23c585c39dd5adc594d9cff3c2f
unbound-1.13.1-13.el9_0.5.aarch64.rpm SHA-256: 5cc2f61fb35c04ec9495c14e22f53e48a7df022a4281ad379721c49a41846277
unbound-debuginfo-1.13.1-13.el9_0.5.aarch64.rpm SHA-256: 54af827afdf497984a364fb9580f792eb1ebb5d0c3138eae6a2a58a99300a259
unbound-debugsource-1.13.1-13.el9_0.5.aarch64.rpm SHA-256: 33a9c843d568230b58f4d028aa5a5935af6f8b7b71e8cc4b69d2611b274f2a5b
unbound-libs-1.13.1-13.el9_0.5.aarch64.rpm SHA-256: b44434667fc698bdac80f9e96518831860cc6758cccdaebeaa247e6aa9312e9a
unbound-libs-debuginfo-1.13.1-13.el9_0.5.aarch64.rpm SHA-256: 36f1d5b70bf47e7dd5646dd99071951d1562f50bdb8fa8da2009a12c73dafe50

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0

SRPM
unbound-1.13.1-13.el9_0.5.src.rpm SHA-256: 899fbb84c2a8ab011fea3d4242c9d6f7d03f25a2ea1ffb6205b3be466898b2c7
s390x
python3-unbound-1.13.1-13.el9_0.5.s390x.rpm SHA-256: 4fa2240171ba2edad2bf1295f24265f8a3d18070d4517d7cdfba238520429418
python3-unbound-debuginfo-1.13.1-13.el9_0.5.s390x.rpm SHA-256: 1692380ce42f159eba0f2c8cd103776f85835882c4fb4d888882042f58d9ad9e
unbound-1.13.1-13.el9_0.5.s390x.rpm SHA-256: 8deb399f6574ffceb1926ce9ab8e24c1983b6a511adafc216430875f4415c649
unbound-debuginfo-1.13.1-13.el9_0.5.s390x.rpm SHA-256: 1141e1b4f354a344d99a443431d84b5dd6a595151662d31ac9a8e71bbb08326c
unbound-debugsource-1.13.1-13.el9_0.5.s390x.rpm SHA-256: ca65a5c8cf1b2ba7c3d04ce03b55b0a80126e8bcf3c0cbde72fbf174cda02dd2
unbound-libs-1.13.1-13.el9_0.5.s390x.rpm SHA-256: c77574d7c3d69ea93f99c4743dbad4b51d89b277d0e85aed951bb19d0aa61b52
unbound-libs-debuginfo-1.13.1-13.el9_0.5.s390x.rpm SHA-256: 891e2dda2aabab9842f33550a5bf3c2cb129592b509c5d43b9ae335b551d03fe

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility