What is CVE-2026-55973?
CVE-2026-55973 is a vulnerability in NLnet Labs Unbound where, with 'dns-error-reporting: yes' enabled, the EDNS Report-Channel option length is mishandled during agent domain name validation. This affects versions 1.23.0 through 1.25.1. Users should immediately update to the latest patched version to mitigate the risk.
Azərbaycanca: CVE-2026-55973 NLnet Labs Unbound proqramında aşkar edilmiş zəiflikdir. 'dns-error-reporting: yes' konfiqurasiyası aktiv olduqda, EDNS Report-Channel opsiyasının uzunluğu agent domen adının yoxlanışı zamanı səhv idarə olunur. Təsirə məruz qalmamaq üçün təcili olaraq ən son versiyaya yeniləmə tövsiyə olunur.
Related CVEs
link basis: shared vendor: NLnet Labs
FAQ2
Which software is affected by CVE-2026-55973?
CVE-2026-55973 affects NLnet Labs Unbound.
What should I do to protect against this vulnerability?
You should immediately update to the latest patched version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.