Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:23414 - Security Advisory
Issued:
2025-12-16
Updated:
2025-12-16

RHSA-2025:23414 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: bind security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for bind is now available for Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly.

Security Fix(es):

  • bind: DNS forwarders - cache poisoning vulnerability (CVE-2021-25220)
  • bind: Cache poisoning attacks with unsolicited RRs (CVE-2025-40778)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server 6 x86_64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension 6 x86_64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension 6 i386
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension (for IBM z Systems) 6 s390x

Fixes

  • BZ - 2064512 - CVE-2021-25220 bind: DNS forwarders - cache poisoning vulnerability
  • BZ - 2405827 - CVE-2025-40778 bind: Cache poisoning attacks with unsolicited RRs

CVEs

  • CVE-2021-25220
  • CVE-2025-40778

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server 6

SRPM
bind-9.8.2-0.68.rc1.el6_10.17.src.rpm SHA-256: 1219775919af7890a07ede2a76ff68963a557ddabf91b2219d091a0b8e1b31df
x86_64
bind-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: 96ddf5e8ca25a5e5839a5165839f33a139064ed5915000d7790aed2c8665018d
bind-chroot-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: a63f68133f55984711fde6457a9e7f435396b16527068b9e2e9f61ba2a6e345d
bind-debuginfo-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: 8f0b32177395472f9b5fcdd6573f7836813e038129687f250c3d784f786feb1f
bind-debuginfo-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: f06079de90ef6dfe88f71f28491f6d74ef1b1deaa118061b71d2dd2777c665e0
bind-devel-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: 81af63023d8bc2ce3d1380319531e3ba9aed64934bee0ab8429b6a7bc86a122b
bind-devel-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: e2717b35b24c538db2c807d93588e45bceaccd73515b9ccd808a5b41aff27bc8
bind-libs-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: 7d7b4e7f26f7fb4a5d12cf2adb69c1214b2ca2d9e71006b8923861a7337cd523
bind-libs-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: 3652a302006cfcbab4f7084f9fa58076864f03a1de1fb1ec7bfa0d4b9e33c719
bind-sdb-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: f1fb59cc2267f1d827640f509821df58b683d9e1c7ded9648fe34c26886daff3
bind-utils-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: a0b0c57075331826eaf2c791046956016e6c5bb44c8c7e00ea5c59875cc035d3

Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension 6

SRPM
bind-9.8.2-0.68.rc1.el6_10.17.src.rpm SHA-256: 1219775919af7890a07ede2a76ff68963a557ddabf91b2219d091a0b8e1b31df
x86_64
bind-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: 96ddf5e8ca25a5e5839a5165839f33a139064ed5915000d7790aed2c8665018d
bind-chroot-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: a63f68133f55984711fde6457a9e7f435396b16527068b9e2e9f61ba2a6e345d
bind-debuginfo-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: 8f0b32177395472f9b5fcdd6573f7836813e038129687f250c3d784f786feb1f
bind-debuginfo-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: 8f0b32177395472f9b5fcdd6573f7836813e038129687f250c3d784f786feb1f
bind-debuginfo-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: f06079de90ef6dfe88f71f28491f6d74ef1b1deaa118061b71d2dd2777c665e0
bind-debuginfo-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: f06079de90ef6dfe88f71f28491f6d74ef1b1deaa118061b71d2dd2777c665e0
bind-devel-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: 81af63023d8bc2ce3d1380319531e3ba9aed64934bee0ab8429b6a7bc86a122b
bind-devel-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: e2717b35b24c538db2c807d93588e45bceaccd73515b9ccd808a5b41aff27bc8
bind-libs-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: 7d7b4e7f26f7fb4a5d12cf2adb69c1214b2ca2d9e71006b8923861a7337cd523
bind-libs-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: 3652a302006cfcbab4f7084f9fa58076864f03a1de1fb1ec7bfa0d4b9e33c719
bind-sdb-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: f1fb59cc2267f1d827640f509821df58b683d9e1c7ded9648fe34c26886daff3
bind-utils-9.8.2-0.68.rc1.el6_10.17.x86_64.rpm SHA-256: a0b0c57075331826eaf2c791046956016e6c5bb44c8c7e00ea5c59875cc035d3
i386
bind-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: 83795580a24be21183538a5005cc76b84445b3ae1e5ab164ac9bdd3eae2ddcfd
bind-chroot-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: e87846bdb402869a1af256d0607053a36f276780c5d481956d59e0cf5f9cc641
bind-debuginfo-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: 8f0b32177395472f9b5fcdd6573f7836813e038129687f250c3d784f786feb1f
bind-debuginfo-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: 8f0b32177395472f9b5fcdd6573f7836813e038129687f250c3d784f786feb1f
bind-devel-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: 81af63023d8bc2ce3d1380319531e3ba9aed64934bee0ab8429b6a7bc86a122b
bind-libs-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: 7d7b4e7f26f7fb4a5d12cf2adb69c1214b2ca2d9e71006b8923861a7337cd523
bind-sdb-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: d85a60149cf745b88fa77779df27e2e476e6273b26ca55d74d47c3c8bfc838ff
bind-utils-9.8.2-0.68.rc1.el6_10.17.i686.rpm SHA-256: 48c1cbc9b9eeb47c413110021faeaf691808bb8c0ca817fad32ad07a643c01d5

Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension (for IBM z Systems) 6

SRPM
bind-9.8.2-0.68.rc1.el6_10.17.src.rpm SHA-256: 1219775919af7890a07ede2a76ff68963a557ddabf91b2219d091a0b8e1b31df
s390x
bind-9.8.2-0.68.rc1.el6_10.17.s390x.rpm SHA-256: b253ea2372ce899097e1ffaf5f525d3b232cc35b2066a048d3e92fe818f26fee
bind-chroot-9.8.2-0.68.rc1.el6_10.17.s390x.rpm SHA-256: df5602807e44c8dab2ddeb742153e9ae3f14025fa8db25177b848f35816a201b
bind-debuginfo-9.8.2-0.68.rc1.el6_10.17.s390.rpm SHA-256: ed4deccdd60d023bf07b298140a9c46243686b0bbd8f9ac8ec165de287d2f595
bind-debuginfo-9.8.2-0.68.rc1.el6_10.17.s390.rpm SHA-256: ed4deccdd60d023bf07b298140a9c46243686b0bbd8f9ac8ec165de287d2f595
bind-debuginfo-9.8.2-0.68.rc1.el6_10.17.s390x.rpm SHA-256: cc193d072b0163fa428de804435ba4f6306960e44e228e836739380b60f0f264
bind-debuginfo-9.8.2-0.68.rc1.el6_10.17.s390x.rpm SHA-256: cc193d072b0163fa428de804435ba4f6306960e44e228e836739380b60f0f264
bind-devel-9.8.2-0.68.rc1.el6_10.17.s390.rpm SHA-256: fdee63661505eeb99b04ed79753159a10eb823e19f3d31416d92a5f84e32b203
bind-devel-9.8.2-0.68.rc1.el6_10.17.s390x.rpm SHA-256: 74a52a04cb3b38b3900b7492d467fbdf42f7c4db4a78bf23dce0ac912566f7b5
bind-libs-9.8.2-0.68.rc1.el6_10.17.s390.rpm SHA-256: cb5991b48377232c0f878675f3f511ff931391f079f5761743532773784901ad
bind-libs-9.8.2-0.68.rc1.el6_10.17.s390x.rpm SHA-256: c06c1ea3aed6a484479d5d63412643dbadc5e62f37c326bdb1683e394bb143be
bind-sdb-9.8.2-0.68.rc1.el6_10.17.s390x.rpm SHA-256: 8f05a8f81b36dde3357d8bb75a9d57d9df1de198a2373347dc96617516c9a0f8
bind-utils-9.8.2-0.68.rc1.el6_10.17.s390x.rpm SHA-256: 95fcbe10e2c92ebfd9e0e56d57fc0190c618e8085c7fba03a60a91cb4859b19d

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility