Логотип exploitDog
bind:"CVE-2021-3448"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2021-3448"

Количество 16

Количество 16

ubuntu логотип

CVE-2021-3448

больше 4 лет назад

A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.

CVSS3: 4
EPSS: Низкий
redhat логотип

CVE-2021-3448

почти 5 лет назад

A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.

CVSS3: 4
EPSS: Низкий
nvd логотип

CVE-2021-3448

больше 4 лет назад

A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.

CVSS3: 4
EPSS: Низкий
msrc логотип

CVE-2021-3448

больше 4 лет назад

CVSS3: 4
EPSS: Низкий
debian логотип

CVE-2021-3448

больше 4 лет назад

A flaw was found in dnsmasq in versions before 2.85. When configured t ...

CVSS3: 4
EPSS: Низкий
rocky логотип

RLSA-2021:4153

около 4 лет назад

Moderate: dnsmasq security and bug fix update

EPSS: Низкий
github логотип

GHSA-vvf4-c8p4-89v5

больше 3 лет назад

A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.

CVSS3: 4
EPSS: Низкий
oracle-oval логотип

ELSA-2021-4153

около 4 лет назад

ELSA-2021-4153: dnsmasq security and bug fix update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2022-04028

больше 4 лет назад

Уязвимость DNS-сервера Dnsmasq, связанная с неправильно реализованной проверкой безопасности для стандартных элементов, позволяющая нарушителю реализовать атаку отравления кэша DNS

CVSS3: 4
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:3530-1

около 4 лет назад

Security update for dnsmasq

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1426-1

около 4 лет назад

Security update for dnsmasq

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:14941-1

больше 3 лет назад

Security update for dnsmasq

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:14940-1

больше 3 лет назад

Security update for dnsmasq

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1289-1

больше 3 лет назад

Security update for dnsmasq

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:1288-1

больше 3 лет назад

Security update for dnsmasq

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3530-1

около 4 лет назад

Security update for dnsmasq

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-3448

A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.

CVSS3: 4
0%
Низкий
больше 4 лет назад
redhat логотип
CVE-2021-3448

A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.

CVSS3: 4
0%
Низкий
почти 5 лет назад
nvd логотип
CVE-2021-3448

A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.

CVSS3: 4
0%
Низкий
больше 4 лет назад
msrc логотип
CVSS3: 4
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-3448

A flaw was found in dnsmasq in versions before 2.85. When configured t ...

CVSS3: 4
0%
Низкий
больше 4 лет назад
rocky логотип
RLSA-2021:4153

Moderate: dnsmasq security and bug fix update

0%
Низкий
около 4 лет назад
github логотип
GHSA-vvf4-c8p4-89v5

A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.

CVSS3: 4
0%
Низкий
больше 3 лет назад
oracle-oval логотип
ELSA-2021-4153

ELSA-2021-4153: dnsmasq security and bug fix update (MODERATE)

около 4 лет назад
fstec логотип
BDU:2022-04028

Уязвимость DNS-сервера Dnsmasq, связанная с неправильно реализованной проверкой безопасности для стандартных элементов, позволяющая нарушителю реализовать атаку отравления кэша DNS

CVSS3: 4
0%
Низкий
больше 4 лет назад
suse-cvrf логотип
openSUSE-SU-2021:3530-1

Security update for dnsmasq

около 4 лет назад
suse-cvrf логотип
openSUSE-SU-2021:1426-1

Security update for dnsmasq

около 4 лет назад
suse-cvrf логотип
SUSE-SU-2022:14941-1

Security update for dnsmasq

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:14940-1

Security update for dnsmasq

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:1289-1

Security update for dnsmasq

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:1288-1

Security update for dnsmasq

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2021:3530-1

Security update for dnsmasq

около 4 лет назад

Уязвимостей на страницу