Use-after-free in Unbound - CVE-2026-52863
Published: July 23, 2026
Unbound
Detailed vulnerability description
The vulnerability allows a remote attacker to cause memory corruption.
The vulnerability exists due to memory corruption in the view name handling for subqueries when processing queries that combine respip or rpz with a module that can attach subqueries under pressure. A remote attacker can send queries that trigger subquery processing and query jostling to cause memory corruption.
Exploitation requires Unbound to be configured with access-control-view together with respip or rpz and a module such as dns64, subnetcache, or respip CNAME redirection, and the issue occurs when slow queries are dropped under pressure.