Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:21939 - Security Advisory
Issued:
2025-11-24
Updated:
2025-11-24

RHSA-2025:21939 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: bind9.16 security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for bind9.16 is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Red Hat Enterprise Linux 8.8 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly.

Security Fix(es):

  • bind: Cache poisoning attacks with unsolicited RRs (CVE-2025-40778)
  • bind: Cache poisoning due to weak PRNG (CVE-2025-40780)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Extended Life Cycle Long Life 8.8 x86_64
  • Red Hat Enterprise Linux Server - TUS 8.8 x86_64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 x86_64

Fixes

  • BZ - 2405827 - CVE-2025-40778 bind: Cache poisoning attacks with unsolicited RRs
  • BZ - 2405829 - CVE-2025-40780 bind: Cache poisoning due to weak PRNG

CVEs

  • CVE-2025-40778
  • CVE-2025-40780

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Extended Life Cycle Long Life 8.8

SRPM
bind9.16-9.16.23-0.14.el8_8.7.src.rpm SHA-256: bccd1577653c87b466cef7813eca07e30baf348ccb2a7ed9b3b644c169c2dde9
x86_64
bind9.16-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: f162877adcd15d66077d153dbca7e6f2084028581e86108b5786c4ca3e2a1c77
bind9.16-chroot-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: edbd7417df564a608d983f4ff8bf8cd0fd0a5e7e651906cd429d09f324d7d4d6
bind9.16-debuginfo-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: e20265f724f772836074aef5ff1b7924b0a8e4d86fb7454bd8f6b5f41b9e6435
bind9.16-debugsource-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: d3480320962df35e3b3d5256b60f1d0a4e296a12f2a9a768a47eca0ae7f28fbf
bind9.16-dnssec-utils-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: 42bdac93f2135ae4e6dd2b47c6966f38652ba2efd193008aec3497a867906562
bind9.16-dnssec-utils-debuginfo-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: 48cef31bf4b4c841fa976629a6dd45cc720d283be89e9bcb8e2a6b43a63a36c1
bind9.16-libs-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: a96eafc045afa10b89e8c9a1f77c7e9fa531d362ca021160e7fc3199100f3a76
bind9.16-libs-debuginfo-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: b14e6df81e74205913f6fc51859f313706e66a8221da8e04e2a0270b1fce075a
bind9.16-license-9.16.23-0.14.el8_8.7.noarch.rpm SHA-256: 4d324fbc8d3544f70b569ce5d03c9e2442b035e42d9b77a593c73daa9a1aaad6
bind9.16-utils-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: 959ad89bc9cf6b5f4b6c7e9b5336504c1e28db144fcb8a16aa7792be069df972
bind9.16-utils-debuginfo-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: a637c7ea18acdd6e258a0b0f84bea27283ac248d2372aeb1cd26592b7759102d
python3-bind9.16-9.16.23-0.14.el8_8.7.noarch.rpm SHA-256: 6f7d03c2e6fc5662b23316de5d15fd0015a58fdcdabfc7e5d0f0999e35cbb50d

Red Hat Enterprise Linux Server - TUS 8.8

SRPM
bind9.16-9.16.23-0.14.el8_8.7.src.rpm SHA-256: bccd1577653c87b466cef7813eca07e30baf348ccb2a7ed9b3b644c169c2dde9
x86_64
bind9.16-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: f162877adcd15d66077d153dbca7e6f2084028581e86108b5786c4ca3e2a1c77
bind9.16-chroot-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: edbd7417df564a608d983f4ff8bf8cd0fd0a5e7e651906cd429d09f324d7d4d6
bind9.16-debuginfo-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: e20265f724f772836074aef5ff1b7924b0a8e4d86fb7454bd8f6b5f41b9e6435
bind9.16-debugsource-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: d3480320962df35e3b3d5256b60f1d0a4e296a12f2a9a768a47eca0ae7f28fbf
bind9.16-dnssec-utils-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: 42bdac93f2135ae4e6dd2b47c6966f38652ba2efd193008aec3497a867906562
bind9.16-dnssec-utils-debuginfo-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: 48cef31bf4b4c841fa976629a6dd45cc720d283be89e9bcb8e2a6b43a63a36c1
bind9.16-libs-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: a96eafc045afa10b89e8c9a1f77c7e9fa531d362ca021160e7fc3199100f3a76
bind9.16-libs-debuginfo-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: b14e6df81e74205913f6fc51859f313706e66a8221da8e04e2a0270b1fce075a
bind9.16-license-9.16.23-0.14.el8_8.7.noarch.rpm SHA-256: 4d324fbc8d3544f70b569ce5d03c9e2442b035e42d9b77a593c73daa9a1aaad6
bind9.16-utils-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: 959ad89bc9cf6b5f4b6c7e9b5336504c1e28db144fcb8a16aa7792be069df972
bind9.16-utils-debuginfo-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: a637c7ea18acdd6e258a0b0f84bea27283ac248d2372aeb1cd26592b7759102d
python3-bind9.16-9.16.23-0.14.el8_8.7.noarch.rpm SHA-256: 6f7d03c2e6fc5662b23316de5d15fd0015a58fdcdabfc7e5d0f0999e35cbb50d

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8

SRPM
bind9.16-9.16.23-0.14.el8_8.7.src.rpm SHA-256: bccd1577653c87b466cef7813eca07e30baf348ccb2a7ed9b3b644c169c2dde9
ppc64le
bind9.16-9.16.23-0.14.el8_8.7.ppc64le.rpm SHA-256: 561aab09072724276d7bd9b2ba1ef59feecdd1fb786175d763f352946e29c05f
bind9.16-chroot-9.16.23-0.14.el8_8.7.ppc64le.rpm SHA-256: 7818d32cefa719003920374d88344099b9895bb113486d5a471fe54ecc819488
bind9.16-debuginfo-9.16.23-0.14.el8_8.7.ppc64le.rpm SHA-256: 71acfd7e4ca49bdbec7a38b06fe30b71dc7cef68873473d9024bb74b344d8fdb
bind9.16-debugsource-9.16.23-0.14.el8_8.7.ppc64le.rpm SHA-256: 25b0f3480a9cbde08e5cb25198a9d6e703802fc5e35134f75549a333d0215039
bind9.16-dnssec-utils-9.16.23-0.14.el8_8.7.ppc64le.rpm SHA-256: bfac0374ea189c8c7896e63ba0dc18dd0e3327260fb0b22afd309e795a5006e9
bind9.16-dnssec-utils-debuginfo-9.16.23-0.14.el8_8.7.ppc64le.rpm SHA-256: 28aba2d25992209b52eb5b4447b892647463f3d2da1ce631aede27228bfa4c39
bind9.16-libs-9.16.23-0.14.el8_8.7.ppc64le.rpm SHA-256: a55e73e640d3a378c7c40b1d2cbd8cfb350adf9a0afab0d9c0ec0504df92b20b
bind9.16-libs-debuginfo-9.16.23-0.14.el8_8.7.ppc64le.rpm SHA-256: 578eada11685e7cf5bc6c8b9f816d7dc9835beb80c3cac94dcfae9600dd08dfa
bind9.16-license-9.16.23-0.14.el8_8.7.noarch.rpm SHA-256: 4d324fbc8d3544f70b569ce5d03c9e2442b035e42d9b77a593c73daa9a1aaad6
bind9.16-utils-9.16.23-0.14.el8_8.7.ppc64le.rpm SHA-256: b29558c26c48097debabf4ed15468ffe60ca6a6842f15a78a0aa40758b4d19df
bind9.16-utils-debuginfo-9.16.23-0.14.el8_8.7.ppc64le.rpm SHA-256: d0d08c964f49ff7c1674bf7d8c6b3bd7541601854d00dd938ba361b131987725
python3-bind9.16-9.16.23-0.14.el8_8.7.noarch.rpm SHA-256: 6f7d03c2e6fc5662b23316de5d15fd0015a58fdcdabfc7e5d0f0999e35cbb50d

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8

SRPM
bind9.16-9.16.23-0.14.el8_8.7.src.rpm SHA-256: bccd1577653c87b466cef7813eca07e30baf348ccb2a7ed9b3b644c169c2dde9
x86_64
bind9.16-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: f162877adcd15d66077d153dbca7e6f2084028581e86108b5786c4ca3e2a1c77
bind9.16-chroot-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: edbd7417df564a608d983f4ff8bf8cd0fd0a5e7e651906cd429d09f324d7d4d6
bind9.16-debuginfo-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: e20265f724f772836074aef5ff1b7924b0a8e4d86fb7454bd8f6b5f41b9e6435
bind9.16-debugsource-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: d3480320962df35e3b3d5256b60f1d0a4e296a12f2a9a768a47eca0ae7f28fbf
bind9.16-dnssec-utils-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: 42bdac93f2135ae4e6dd2b47c6966f38652ba2efd193008aec3497a867906562
bind9.16-dnssec-utils-debuginfo-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: 48cef31bf4b4c841fa976629a6dd45cc720d283be89e9bcb8e2a6b43a63a36c1
bind9.16-libs-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: a96eafc045afa10b89e8c9a1f77c7e9fa531d362ca021160e7fc3199100f3a76
bind9.16-libs-debuginfo-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: b14e6df81e74205913f6fc51859f313706e66a8221da8e04e2a0270b1fce075a
bind9.16-license-9.16.23-0.14.el8_8.7.noarch.rpm SHA-256: 4d324fbc8d3544f70b569ce5d03c9e2442b035e42d9b77a593c73daa9a1aaad6
bind9.16-utils-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: 959ad89bc9cf6b5f4b6c7e9b5336504c1e28db144fcb8a16aa7792be069df972
bind9.16-utils-debuginfo-9.16.23-0.14.el8_8.7.x86_64.rpm SHA-256: a637c7ea18acdd6e258a0b0f84bea27283ac248d2372aeb1cd26592b7759102d
python3-bind9.16-9.16.23-0.14.el8_8.7.noarch.rpm SHA-256: 6f7d03c2e6fc5662b23316de5d15fd0015a58fdcdabfc7e5d0f0999e35cbb50d

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility