CVE-2015-3294
- EPSS 0.18%
- Veröffentlicht 08.05.2015 14:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
The tcp_request function in Dnsmasq before 2.73rc4 does not properly handle the return value of the setup_reply function, which allows remote attackers to read process memory and cause a denial of service (out-of-bounds read and crash) via a malforme...
- EPSS 0.05%
- Veröffentlicht 05.03.2013 21:38:54
- Zuletzt bearbeitet 11.04.2025 00:51:21
Dnsmasq before 2.66test2, when used with certain libvirt configurations, replies to queries from prohibited interfaces, which allows remote attackers to cause a denial of service (traffic amplification) via spoofed TCP based DNS queries. NOTE: this ...
- EPSS 1.14%
- Veröffentlicht 05.03.2013 21:38:54
- Zuletzt bearbeitet 11.04.2025 00:51:21
Dnsmasq before 2.63test1, when used with certain libvirt configurations, replies to requests from prohibited interfaces, which allows remote attackers to cause a denial of service (traffic amplification) via a spoofed DNS query.
CVE-2009-2958
- EPSS 1.13%
- Veröffentlicht 02.09.2009 15:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
The tftp_request function in tftp.c in dnsmasq before 2.50, when --enable-tftp is used, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a TFTP read (aka RRQ) request with a malformed blksize option...
CVE-2009-2957
- EPSS 5.54%
- Veröffentlicht 02.09.2009 15:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Heap-based buffer overflow in the tftp_request function in tftp.c in dnsmasq before 2.50, when --enable-tftp is used, might allow remote attackers to execute arbitrary code via a long filename in a TFTP packet, as demonstrated by a read (aka RRQ) req...
CVE-2008-3214
- EPSS 0.24%
- Veröffentlicht 18.07.2008 16:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
dnsmasq 2.25 allows remote attackers to cause a denial of service (daemon crash) by (1) renewing a nonexistent lease or (2) sending a DHCPREQUEST for an IP address that is not in the same network, related to the DHCP NAK response from the daemon.
CVE-2005-0877
- EPSS 0.05%
- Veröffentlicht 02.05.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Dnsmasq before 2.21 allows remote attackers to poison the DNS cache via answers to queries that were not made by Dnsmasq.