Описание
A buffer overflow in dnsmasq’s extract_addresses() function allows an attacker to trigger a heap out-of-bounds read and crash by exploiting a malformed DNS response, enabling extract_name() to advance the pointer past the record’s end.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 2.93-1 |
| esm-infra-legacy/trusty | not-affected | code not present |
| esm-infra-legacy/xenial | released | 2.90-0ubuntu0.16.04.1+esm3 |
| esm-infra/bionic | released | 2.90-0ubuntu0.18.04.1+esm3 |
| esm-infra/focal | released | 2.90-0ubuntu0.20.04.1+esm2 |
| esm-infra/xenial | released | 2.90-0ubuntu0.16.04.1+esm3 |
| jammy | released | 2.90-0ubuntu0.22.04.3 |
| noble | released | 2.90-2ubuntu0.3 |
| questing | released | 2.91-1ubuntu0.2 |
| resolute | released | 2.92-1ubuntu0.2 |
Показывать по
EPSS
7.3 High
CVSS3
Связанные уязвимости
A buffer overflow in dnsmasq’s extract_addresses() function allows an attacker to trigger a heap out-of-bounds read and crash by exploiting a malformed DNS response, enabling extract_name() to advance the pointer past the record’s end.
A buffer overflow in dnsmasq’s extract_addresses() function allows an attacker to trigger a heap out-of-bounds read and crash by exploiting a malformed DNS response, enabling extract_name() to advance the pointer past the record’s end.
A buffer overflow in dnsmasq\u2019s extract_addresses() function allow ...
A buffer overflow in dnsmasq’s extract_addresses() function allows an attacker to trigger a heap out-of-bounds read and crash by exploiting a malformed DNS response, enabling extract_name() to advance the pointer past the record’s end.
EPSS
7.3 High
CVSS3