Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hv63-qc47-8j8h

Опубликовано: 22 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

A heap-based buffer overflow was found in dnsmasq. When DNSSEC validation and query logging are both enabled, logging of DS or DNSKEY replies containing unsupported algorithm or digest types can cause dnsmasq to write past the end of an internal logging buffer. A remote attacker able to supply such a DNS response may crash the dnsmasq process, resulting in denial of service.

A heap-based buffer overflow was found in dnsmasq. When DNSSEC validation and query logging are both enabled, logging of DS or DNSKEY replies containing unsupported algorithm or digest types can cause dnsmasq to write past the end of an internal logging buffer. A remote attacker able to supply such a DNS response may crash the dnsmasq process, resulting in denial of service.

EPSS

Процентиль: 33%
0.00403
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-122

Связанные уязвимости

CVSS3: 5.9
ubuntu
около 2 месяцев назад

A heap-based buffer overflow was found in dnsmasq. When DNSSEC validation and query logging are both enabled, logging of DS or DNSKEY replies containing unsupported algorithm or digest types can cause dnsmasq to write past the end of an internal logging buffer. A remote attacker able to supply such a DNS response may crash the dnsmasq process, resulting in denial of service.

CVSS3: 5.9
redhat
4 месяца назад

A heap-based buffer overflow was found in dnsmasq. When DNSSEC validation and query logging are both enabled, logging of DS or DNSKEY replies containing unsupported algorithm or digest types can cause dnsmasq to write past the end of an internal logging buffer. A remote attacker able to supply such a DNS response may crash the dnsmasq process, resulting in denial of service.

CVSS3: 5.9
nvd
около 2 месяцев назад

A heap-based buffer overflow was found in dnsmasq. When DNSSEC validation and query logging are both enabled, logging of DS or DNSKEY replies containing unsupported algorithm or digest types can cause dnsmasq to write past the end of an internal logging buffer. A remote attacker able to supply such a DNS response may crash the dnsmasq process, resulting in denial of service.

CVSS3: 5.9
msrc
около 2 месяцев назад

Dnsmasq: dnsmasq: heap buffer overflow in log_query() when logging unsupported ds/dnskey replies

CVSS3: 5.9
debian
около 2 месяцев назад

A heap-based buffer overflow was found in dnsmasq. When DNSSEC validat ...

EPSS

Процентиль: 33%
0.00403
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-122