Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-7046

Опубликовано: 17 нояб. 2023
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2023-7046: dnsmasq security and bug fix update (MODERATE)

[2.79-31]

  • Do not create and search --local and --address=/x/# domains (#2233542)

[2.79-30]

  • Make create logfile writeable by root (#2156789)

[2.79-29]

  • Fix also dynamically set resolvers over dbus (#2186481)

[2.79-28]

  • Correct possible crashes when server=/example.net/# is used (#2186481)

[2.79-27]

  • Limit offered EDNS0 size to 1232 (CVE-2023-28450)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

dnsmasq

2.79-31.el8

dnsmasq-utils

2.79-31.el8

Oracle Linux x86_64

dnsmasq

2.79-31.el8

dnsmasq-utils

2.79-31.el8

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 2 лет назад

An issue was discovered in Dnsmasq before 2.90. The default maximum EDNS.0 UDP packet size was set to 4096 but should be 1232 because of DNS Flag Day 2020.

CVSS3: 7.5
redhat
больше 2 лет назад

An issue was discovered in Dnsmasq before 2.90. The default maximum EDNS.0 UDP packet size was set to 4096 but should be 1232 because of DNS Flag Day 2020.

CVSS3: 7.5
nvd
больше 2 лет назад

An issue was discovered in Dnsmasq before 2.90. The default maximum EDNS.0 UDP packet size was set to 4096 but should be 1232 because of DNS Flag Day 2020.

CVSS3: 7.5
msrc
больше 2 лет назад

Описание отсутствует

CVSS3: 7.5
debian
больше 2 лет назад

An issue was discovered in Dnsmasq before 2.90. The default maximum ED ...