Dnsmasq: Denial of service A vulnerability in Dnsmasq can lead to a Denial of Service condition. dnsmasq 2015-12-17 2015-12-17 547966 remote 2.72-r2 2.72-r2

Dnsmasq is a lightweight, easy to configure DNS forwarder and DHCP server.

An out-of-bounds read vulnerability has been found in the tcp_request function in Dnsmasq.

A remote attacker could send a specially crafted DNS request, possibly resulting in a Denial of Service condition.

There is no known workaround at this time.

All Dnsmasq users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=net-dns/dnsmasq-2.72-r2"
CVE-2015-3294 BlueKnight ackle