Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2020:0419-1

Опубликовано: 19 фев. 2020
Источник: suse-cvrf

Описание

Security update for dnsmasq

This update for dnsmasq fixes the following issues:

Security issue fixed:

  • CVE-2019-14834: Fixed a memory leak which could have allowed to remote attackers to cause denial of service via DHCP response creation (bsc#1154849)

Other issue addressed:

  • Removed cache size limit (bsc#1138743).

Список пакетов

HPE Helion OpenStack 8
dnsmasq-utils-2.78-18.12.1
SUSE Linux Enterprise Desktop 12 SP4
dnsmasq-2.78-18.12.1
SUSE Linux Enterprise Server 12 SP4
dnsmasq-2.78-18.12.1
SUSE Linux Enterprise Server 12 SP5
dnsmasq-2.78-18.12.1
SUSE Linux Enterprise Server for SAP Applications 12 SP4
dnsmasq-2.78-18.12.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5
dnsmasq-2.78-18.12.1
SUSE OpenStack Cloud 7
dnsmasq-utils-2.78-18.12.1
SUSE OpenStack Cloud 8
dnsmasq-utils-2.78-18.12.1
SUSE OpenStack Cloud 9
dnsmasq-utils-2.78-18.12.1
SUSE OpenStack Cloud Crowbar 8
dnsmasq-utils-2.78-18.12.1
SUSE OpenStack Cloud Crowbar 9
dnsmasq-utils-2.78-18.12.1

Описание

A vulnerability was found in dnsmasq before version 2.81, where the memory leak allows remote attackers to cause a denial of service (memory consumption) via vectors involving DHCP response creation.


Затронутые продукты
HPE Helion OpenStack 8:dnsmasq-utils-2.78-18.12.1
SUSE Linux Enterprise Desktop 12 SP4:dnsmasq-2.78-18.12.1
SUSE Linux Enterprise Server 12 SP4:dnsmasq-2.78-18.12.1
SUSE Linux Enterprise Server 12 SP5:dnsmasq-2.78-18.12.1

Ссылки