Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-3294

Опубликовано: 08 мая 2015
Источник: nvd
CVSS2: 6.4
EPSS Низкий

Описание

The tcp_request function in Dnsmasq before 2.73rc4 does not properly handle the return value of the setup_reply function, which allows remote attackers to read process memory and cause a denial of service (out-of-bounds read and crash) via a malformed DNS request.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:thekelleys:dnsmasq:*:rc3:*:*:*:*:*:*
Версия до 2.73 (включая)
Конфигурация 2
cpe:2.3:o:oracle:solaris:11.2:*:*:*:*:*:*:*

EPSS

Процентиль: 40%
0.00184
Низкий

6.4 Medium

CVSS2

Дефекты

CWE-19

Связанные уязвимости

ubuntu
больше 10 лет назад

The tcp_request function in Dnsmasq before 2.73rc4 does not properly handle the return value of the setup_reply function, which allows remote attackers to read process memory and cause a denial of service (out-of-bounds read and crash) via a malformed DNS request.

redhat
почти 11 лет назад

The tcp_request function in Dnsmasq before 2.73rc4 does not properly handle the return value of the setup_reply function, which allows remote attackers to read process memory and cause a denial of service (out-of-bounds read and crash) via a malformed DNS request.

debian
больше 10 лет назад

The tcp_request function in Dnsmasq before 2.73rc4 does not properly h ...

suse-cvrf
больше 11 лет назад

Recommended update for dnsmasq

suse-cvrf
почти 11 лет назад

Security update for dnsmasq

EPSS

Процентиль: 40%
0.00184
Низкий

6.4 Medium

CVSS2

Дефекты

CWE-19