RHSA-2026:68787HighCVSS 7.5
Red Hat Security Advisory: perl-Net-DNS security update
🔗 CVE IDs covered (1)
📋 Description
CVE-2026-81928 — perl-Net-DNS: Net::DNS: Denial of Service via unbounded recursion with misplaced TSIG records
🎯 Affected products3
- Red Hat Enterprise Linux AppStream (v. 8)
- perl-Net-DNS-0:1.15-2.el8_10.noarch as a component of Red Hat Enterprise Linux AppStream (v. 8)
- perl-Net-DNS-0:1.15-2.el8_10.src as a component of Red Hat Enterprise Linux AppStream (v. 8)
✅ Remediation
For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Workaround: To mitigate this issue, restrict network access to DNS services utilizing `perl-Net-DNS` to trusted clients or internal networks only, thereby limiting exposure. If the DNS service is not required to act as a forwarder or proxy, disable this functionality to prevent the vulnerable code path from being exercised.