CVE-2026-1519: limit NSEC3 iteration count when proving an insecure
delegation so a maliciously crafted DNSSEC zone with a high-iteration
NSEC3 record cannot exhaust resolver CPU; treat the answer as insecure
above the 150-iteration limit. Backport of bind-9.11.36-16.el8_10.7
(RHSA-2026:8352).