Heap-based buffer overflow in Unbound - CVE-2026-56416
Published: July 23, 2026
Unbound
Detailed vulnerability description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to a heap-based buffer overflow in query_dname_tolower() when validating DNSSEC-signed PX, RP, MINFO, or SOA RRsets with truncated multi-dname RDATA. A remote attacker can serve a specially crafted DNS record with an absent second domain name to cause a denial of service.
Exploitation requires control of a DNSSEC-signed authoritative server, and the outcome depends on heap memory layout and buffer contents.