Vulnerability index

Browse CVEs

15 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Dnsmasq HIGH 7.5
CVE-2023-49441

dnsmasq 2.9 is vulnerable to Integer Overflow via forward_query.

No fix yet
Fix from $1,950 2024-06-06
Dnsmasq HIGH 7.5
CVE-2023-28450

An issue was discovered in Dnsmasq before 2.90. The default maximum EDNS.0 UDP packet size was set to 4096 but should be 1232 because of DNS Flag Day…

Fix: 2.90+
Fix from $1,950 2023-03-15
Dnsmasq CRITICAL 9.8
CVE-2021-45951

Dnsmasq 2.86 has a heap-based buffer overflow in check_bad_address (called from check_for_bogus_wildcard and FuzzCheckForBogusWildcard). NOTE: the ve…

No fix yet
Fix from $2,300 2022-01-01
Dnsmasq CRITICAL 9.8
CVE-2021-45952

Dnsmasq 2.86 has a heap-based buffer overflow in dhcp_reply (called from dhcp_packet and FuzzDhcp). NOTE: the vendor's position is that CVE-2021-4595…

No fix yet
Fix from $2,300 2022-01-01
Dnsmasq CRITICAL 9.8
CVE-2021-45953

Dnsmasq 2.86 has a heap-based buffer overflow in extract_name (called from hash_questions and fuzz_util.c). NOTE: the vendor's position is that CVE-2…

No fix yet
Fix from $2,300 2022-01-01
Dnsmasq CRITICAL 9.8
CVE-2021-45954

Dnsmasq 2.86 has a heap-based buffer overflow in extract_name (called from answer_auth and FuzzAuth). NOTE: the vendor's position is that CVE-2021-45…

No fix yet
Fix from $2,300 2022-01-01
Dnsmasq CRITICAL 9.8
CVE-2021-45955

Dnsmasq 2.86 has a heap-based buffer overflow in resize_packet (called from FuzzResizePacket and fuzz_rfc1035.c) because of the lack of a proper boun…

No fix yet
Fix from $2,300 2022-01-01
Dnsmasq CRITICAL 9.8
CVE-2021-45956

Dnsmasq 2.86 has a heap-based buffer overflow in print_mac (called from log_packet and dhcp_reply). NOTE: the vendor's position is that CVE-2021-4595…

No fix yet
Fix from $2,300 2022-01-01
Dnsmasq CRITICAL 9.8
CVE-2021-45957

Dnsmasq 2.86 has a heap-based buffer overflow in answer_request (called from FuzzAnswerTheRequest and fuzz_rfc1035.c). NOTE: the vendor's position is…

No fix yet
Fix from $2,300 2022-01-01
Dnsmasq HIGH 7.5
CVE-2017-15107

A vulnerability was found in the implementation of DNSSEC in Dnsmasq up to and including 2.78. Wildcard synthesized NSEC records could be improperly …

Fix: after 2.78
Fix from $1,950 2018-01-23
Dnsmasq MEDIUM 6.4
CVE-2015-3294

The tcp_request function in Dnsmasq before 2.73rc4 does not properly handle the return value of the setup_reply function, which allows remote attacke…

Fix: after 2.73
Fix from $1,600 2015-05-08
Dnsmasq MEDIUM 5.0
CVE-2013-0198

Dnsmasq before 2.66test2, when used with certain libvirt configurations, replies to queries from prohibited interfaces, which allows remote attackers…

Fix: after 2.65
Fix from $1,600 2013-03-05
Dnsmasq MEDIUM 6.8
CVE-2009-2957EPSS 13%

Heap-based buffer overflow in the tftp_request function in tftp.c in dnsmasq before 2.50, when --enable-tftp is used, might allow remote attackers to…

Fix: after 2.49
Fix from $1,600 2009-09-02
Dnsmasq HIGH 7.8
CVE-2008-3214

dnsmasq 2.25 allows remote attackers to cause a denial of service (daemon crash) by (1) renewing a nonexistent lease or (2) sending a DHCPREQUEST for…

No fix yet
Fix from $1,950 2008-07-18
Dnsmasq HIGH 7.5
CVE-2005-0877

Dnsmasq before 2.21 allows remote attackers to poison the DNS cache via answers to queries that were not made by Dnsmasq.

Fix: 2.21+
Fix from $1,950 2005-05-02