{"id":"openSUSE-SU-2026:21502-1","summary":"Security update for nsd","details":"This update for nsd fixes the following issues:\n\nChanges in nsd:\n\n- Update nsd.keyring\n\n- update to 4.14.3:\n  https://github.com/NLnetLabs/nsd/blob/NSD_4_14_3_REL/doc/ChangeLog\n  * CVE-2026-12490: Bypass of client certificate verification with transfer over TLS (bsc#1269563)\n  * CVE-2026-12246: Out of bounds stack write with crafted APL RR (bsc#1269564)\n  * CVE-2026-12245: Denial of DNS over TLS service by any DoT client (bsc#1269565)\n  * CVE-2026-12244: Heap overflow and crash with crafted SVCB RR (bsc#1269566)\n- update to 4.14.2:\n  https://github.com/NLnetLabs/nsd/blob/NSD_4_14_2_REL/doc/ChangeLog\n- update to 4.14.1:\n  https://github.com/NLnetLabs/nsd/blob/NSD_4_14_1_REL/doc/ChangeLog\n- update to 4.14.0:\n  https://github.com/NLnetLabs/nsd/blob/NSD_4_14_0_REL/doc/ChangeLog\n\n- update to 4.13.0:\n  https://github.com/NLnetLabs/nsd/blob/NSD_4_13_0_REL/doc/ChangeLog\n  https://github.com/NLnetLabs/nsd/blob/NSD_4_12_1_REL/doc/ChangeLog\n  https://github.com/NLnetLabs/nsd/blob/NSD_4_12_0_REL/doc/ChangeLog\n  https://github.com/NLnetLabs/nsd/blob/NSD_4_11_1_REL/doc/ChangeLog\n  https://github.com/NLnetLabs/nsd/blob/NSD_4_11_0_REL/doc/ChangeLog\n  https://github.com/NLnetLabs/nsd/blob/NSD_4_10_1_REL/doc/ChangeLog\n  https://github.com/NLnetLabs/nsd/blob/NSD_4_10_0_REL/doc/ChangeLog\n  https://github.com/NLnetLabs/nsd/blob/NSD_4_9_1_REL/doc/ChangeLog\n  https://github.com/NLnetLabs/nsd/blob/NSD_4_9_0_REL/doc/ChangeLog\n- enable systemd notify support.\n- enable dnstap support.\n- enable tcp fast open support\n- enable support for \u003e= 2038\n","modified":"2026-08-03T02:10:49.648842909Z","published":"2026-07-29T09:24:11Z","related":["CVE-2026-12244","CVE-2026-12245","CVE-2026-12246","CVE-2026-12490"],"upstream":["CVE-2026-12244","CVE-2026-12245","CVE-2026-12246","CVE-2026-12490"],"references":[{"type":"ADVISORY"},{"type":"REPORT","url":"https://bugzilla.suse.com/1269563"},{"type":"REPORT","url":"https://bugzilla.suse.com/1269564"},{"type":"REPORT","url":"https://bugzilla.suse.com/1269565"},{"type":"REPORT","url":"https://bugzilla.suse.com/1269566"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-12244"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-12245"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-12246"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-12490"}],"affected":[{"package":{"name":"nsd","ecosystem":"openSUSE:Leap 16.0","purl":"pkg:rpm/opensuse/nsd&distro=openSUSE%20Leap%2016.0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.14.3-bp160.1.1"}]}],"ecosystem_specific":{"binaries":[{"nsd":"4.14.3-bp160.1.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:21502-1.json"}}],"schema_version":"1.8.0"}