Описание
In dnsmasq before 2.78, if the DNS packet size does not match the expected size, the size parameter in a memset call gets a negative value. As it is an unsigned value, memset ends up writing up to 0xffffffff zero's (0xffffffffffffffff in 64 bit platforms), making dnsmasq crash.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 2.78-1 |
| esm-infra-legacy/trusty | not-affected | 2.68-1ubuntu0.1 |
| esm-infra/xenial | not-affected | 2.75-1ubuntu0.16.04.2 |
| precise/esm | not-affected | |
| trusty | not-affected | 2.68-1ubuntu0.1 |
| trusty/esm | not-affected | 2.68-1ubuntu0.1 |
| upstream | needs-triage | |
| vivid/ubuntu-core | DNE | |
| xenial | not-affected | 2.75-1ubuntu0.16.04.2 |
| zesty | not-affected | 2.76-5 |
Показывать по
5 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
In dnsmasq before 2.78, if the DNS packet size does not match the expected size, the size parameter in a memset call gets a negative value. As it is an unsigned value, memset ends up writing up to 0xffffffff zero's (0xffffffffffffffff in 64 bit platforms), making dnsmasq crash.
In dnsmasq before 2.78, if the DNS packet size does not match the expected size, the size parameter in a memset call gets a negative value. As it is an unsigned value, memset ends up writing up to 0xffffffff zero's (0xffffffffffffffff in 64 bit platforms), making dnsmasq crash.
In dnsmasq before 2.78, if the DNS packet size does not match the expe ...
In dnsmasq before 2.78, if the DNS packet size does not match the expected size, the size parameter in a memset call gets a negative value. As it is an unsigned value, memset ends up writing up to 0xffffffff zero's (0xffffffffffffffff in 64 bit platforms), making dnsmasq crash.
Уязвимость функции memset() DNS-сервера Dnsmasq, позволяющая нарушителю вызвать отказ в обслуживании
5 Medium
CVSS2
7.5 High
CVSS3