Updated unbound packages fix a security vulnerabilityPublication date: 27 Mar 2021
Affected Mageia releases : 7
Unbound contains a local vulnerability that would allow for a local symlink attack. When writing the PID file Unbound creates the file if it is not there, or opens an existing file for writing. In case the file was already present, it would follow symlinks if the file happened to be a symlink instead of a regular file (CVE-2020-28935).