Search CVE reports


Toggle filters

21 – 30 of 43 results


CVE-2020-25681

Medium priority

Some fixes available 12 of 13

A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in the way RRSets are sorted before validating with DNSSEC data. An attacker on the network, who can forge DNS replies such as that they...

1 affected package

dnsmasq

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
dnsmasq Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2019-14834

Low priority

Some fixes available 3 of 6

A vulnerability was found in dnsmasq before version 2.81, where the memory leak allows remote attackers to cause a denial of service (memory consumption) via vectors involving DHCP response creation.

1 affected package

dnsmasq

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
dnsmasq Not affected Not affected Fixed Fixed Fixed
Show less packages

CVE-2019-14513

Low priority

Some fixes available 1 of 2

Improper bounds checking in Dnsmasq before 2.76 allows an attacker controlled DNS server to send large DNS packets that result in a read operation beyond the buffer allocated for the packet, a different vulnerability than CVE-2017-14491.

1 affected package

dnsmasq

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
dnsmasq Not affected Not affected Not affected Not affected Fixed
Show less packages

CVE-2017-15107

Low priority

Some fixes available 1 of 2

A vulnerability was found in the implementation of DNSSEC in Dnsmasq up to and including 2.78. Wildcard synthesized NSEC records could be improperly interpreted to prove the non-existence of hostnames that actually exist.

1 affected package

dnsmasq

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
dnsmasq Not affected Not affected Fixed
Show less packages

CVE-2017-14496

Medium priority
Fixed

Integer underflow in the add_pseudoheader function in dnsmasq before 2.78 , when the --add-mac, --add-cpe-id or --add-subnet option is specified, allows remote attackers to cause a denial of service via a crafted DNS request.

1 affected package

dnsmasq

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
dnsmasq Fixed
Show less packages

CVE-2017-14495

Medium priority
Fixed

Memory leak in dnsmasq before 2.78, when the --add-mac, --add-cpe-id or --add-subnet option is specified, allows remote attackers to cause a denial of service (memory consumption) via vectors involving DNS response creation.

1 affected package

dnsmasq

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
dnsmasq Fixed
Show less packages

CVE-2017-14494

Medium priority
Fixed

dnsmasq before 2.78, when configured as a relay, allows remote attackers to obtain sensitive memory information via vectors involving handling DHCPv6 forwarded requests.

1 affected package

dnsmasq

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
dnsmasq Fixed
Show less packages

CVE-2017-14493

High priority
Fixed

Stack-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DHCPv6 request.

1 affected package

dnsmasq

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
dnsmasq Fixed
Show less packages

CVE-2017-14492

High priority
Fixed

Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted IPv6 router advertisement request.

1 affected package

dnsmasq

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
dnsmasq Fixed
Show less packages

CVE-2017-14491

High priority
Fixed

Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response.

1 affected package

dnsmasq

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
dnsmasq Fixed
Show less packages