What is CVE-2026-50251?
CVE-2026-50251 affects NLnet Labs Unbound up to version 1.25.1. When 'unwanted-reply-threshold' is enabled, glue records with 0.0.0.0/::0 addresses can short-circuit Unbound via DNS queries on systems that can direct such traffic. Users should urgently apply patches or disable the affected feature.
Azərbaycanca: CVE-2026-50251 NLnet Labs Unbound proqramının 1.25.1-ə qədər olan versiyalarına təsir edir. 'unwanted-reply-threshold' aktiv olduqda, 0.0.0.0/::0 ünvanlı glue records istifadə edilərək DNS sorğuları vasitəsilə Unbound-un qısaqapanmasına səbəb ola bilər. İstifadəçilər təcili olaraq yamaq tətbiq etməli və ya təsirlənmiş funksiyanı deaktiv etməlidir.
Related CVEs
link basis: shared vendor: NLnet Labs
FAQ2
What software and versions are affected by CVE-2026-50251?
CVE-2026-50251 affects NLnet Labs Unbound up to version 1.25.1.
What should users do to protect against CVE-2026-50251?
Users should urgently apply patches or disable the 'unwanted-reply-threshold' feature.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.