Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-4891

Опубликовано: 11 мая 2026
Источник: debian
EPSS Низкий

Описание

A heap-based out-of-bounds read vulnerability in the DNSSEC validation of dnsmasq allows remote attackers to cause a denial of service via a crafted DNS packet.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dnsmasqfixed2.92-5package

Примечания

  • https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2026q2/018471.html

  • https://xchglabs.com/blog/dnsmasq-five-cves.html

  • Fixed by: https://thekelleys.org.uk/gitweb/?p=dnsmasq.git;a=commit;h=788b4e0f6c05217981b512bed4e5fea6f8855d01 (v2.93rc1)

EPSS

Процентиль: 93%
0.06226
Низкий

Связанные уязвимости

CVSS3: 5.3
ubuntu
3 месяца назад

A heap-based out-of-bounds read vulnerability in the DNSSEC validation of dnsmasq allows remote attackers to cause a denial of service via a crafted DNS packet.

CVSS3: 7.5
redhat
3 месяца назад

A heap-based out-of-bounds read vulnerability in the DNSSEC validation of dnsmasq allows remote attackers to cause a denial of service via a crafted DNS packet.

CVSS3: 5.3
nvd
3 месяца назад

A heap-based out-of-bounds read vulnerability in the DNSSEC validation of dnsmasq allows remote attackers to cause a denial of service via a crafted DNS packet.

CVSS3: 5.3
msrc
3 месяца назад

CVE-2026-4891

CVSS3: 5.3
github
3 месяца назад

A heap-based out-of-bounds read vulnerability in the DNSSEC validation of dnsmasq allows remote attackers to cause a denial of service via a crafted DNS packet.

EPSS

Процентиль: 93%
0.06226
Низкий