| BDSA-2026-8452 |
|
Medium |
May 06, 2026 |
dnsmasq is vulnerable to an out-of-bounds write due to improper handling of `BOOTREPLY` packets when the `--dhcp-split-relay` option is enabled. This c
more...
dnsmasq is vulnerable to an out-of-bounds write due to improper handling of `BOOTREPLY` packets when the `--dhcp-split-relay` option is enabled. This could allow an attacker to cause memory corruption, leading to a crash of the dnsmasq daemon and resulting in a denial-of-service (DoS).
less...
|
|
| BDSA-2026-10114 |
|
Medium |
May 12, 2026 |
dnsmasq is vulnerable to denial-of-service (DoS) due to a heap out-of-bounds read. This could allow a remote attacker to crash the application by suppl
more...
dnsmasq is vulnerable to denial-of-service (DoS) due to a heap out-of-bounds read. This could allow a remote attacker to crash the application by supplying a crafted DNS response potentially causing the parser to read beyond the bounds of a resource record.
less...
|
|
| BDSA-2026-10112 |
|
High |
May 12, 2026 |
dnsmasq is vulnerable to memory corruption due to a heap-based buffer overflow. A remote attacker could exploit this by injecting false DNS cache entri
more...
dnsmasq is vulnerable to memory corruption due to a heap-based buffer overflow. A remote attacker could exploit this by injecting false DNS cache entries, which could allow DNS lookups to redirect a user to an attacker-controlled IP address or potentially cause a denial-of-service (DoS) condition. Successful exploitation could allow for memory corruption, which could be leveraged to achieve more serious confidentiality, integrity or availability impacts.
less...
|
|
| BDSA-2026-10072 |
|
Medium |
May 12, 2026 |
dnsmasq is vulnerable to denial-of-service (DoS) due to an infinite loop. This could allow a remote unauthenticated attacker to disrupt services by sen
more...
dnsmasq is vulnerable to denial-of-service (DoS) due to an infinite loop. This could allow a remote unauthenticated attacker to disrupt services by sending specially crafted DNS packets.
less...
|
|
| BDSA-2026-10071 |
|
Medium |
May 12, 2026 |
dnsmasq is vulnerable to denial-of-service (DoS) due to a heap-based out-of-bounds read. This could allow a remote unauthenticated attacker to crash th
more...
dnsmasq is vulnerable to denial-of-service (DoS) due to a heap-based out-of-bounds read. This could allow a remote unauthenticated attacker to crash the application or leak memory information by supplying a crafted DNS packet.
less...
|
|
| BDSA-2026-10070 |
|
Medium |
May 12, 2026 |
dnsmasq is vulnerable to memory corruption due to a heap-based out-of-bounds write. A local unauthenticated attacker could exploit this by sending craf
more...
dnsmasq is vulnerable to memory corruption due to a heap-based out-of-bounds write. A local unauthenticated attacker could exploit this by sending crafted DHCPv6 packets, which could allow for the execution of arbitrary code with root privileges. Successful exploitation could allow for memory corruption, which could be leveraged to achieve more serious confidentiality, integrity or availability impacts.
less...
|
|
| BDSA-2026-10069 |
|
Medium |
May 12, 2026 |
dnsmasq is vulnerable to an data exposure due to a source check bypass. This could allow a remote unauthenticated attacker to expose data by sending a
more...
dnsmasq is vulnerable to an data exposure due to a source check bypass. This could allow a remote unauthenticated attacker to expose data by sending a crafted DNS packet with manipulated client subnet data, which could cause the application to accept and return responses intended for a different network context.
less...
|
|