Search CVE reports


Toggle filters

11 – 20 of 52 results


CVE-2023-50387

Medium priority

Some fixes available 29 of 40

Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the "KeyTrap" issue. One of...

7 affected packages

bind9, isc-dhcp, pdns-recursor, dnsmasq, unbound...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9 Fixed Fixed Fixed Fixed Fixed
isc-dhcp Needs evaluation Needs evaluation Not affected Not affected Not affected
pdns-recursor Not affected Not affected Needs evaluation Ignored Ignored
dnsmasq Fixed Fixed Fixed Fixed Fixed
unbound Fixed Fixed Fixed Fixed Ignored
knot-resolver Not affected Not affected Needs evaluation Ignored Ignored
bind9-libs Not in release Not in release Needs evaluation Ignored Not in release
Show all 7 packages Show less packages

CVE-2020-20145

Medium priority
Not affected

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-14834. Reason: This candidate is a reservation duplicate of CVE-2019-14834. Notes: All CVE users should reference CVE-2019-14834 instead of this candidate....

1 affected package

dnsmasq

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsmasq Not affected Not affected Not affected
Show less packages

CVE-2023-28450

Low priority

Some fixes available 8 of 9

An issue was discovered in Dnsmasq before 2.90. The default maximum EDNS.0 UDP packet size was set to 4096 but should be 1232 because of DNS Flag Day 2020.

1 affected package

dnsmasq

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsmasq Fixed Fixed Fixed Fixed
Show less packages

CVE-2022-0934

Medium priority
Fixed

A single-byte, non-arbitrary write/use-after-free flaw was found in dnsmasq. This flaw allows an attacker who sends a crafted packet processed by dnsmasq, potentially causing a denial of service.

1 affected package

dnsmasq

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsmasq Fixed Fixed Fixed
Show less packages

CVE-2021-45957

Medium priority
Ignored

Dnsmasq 2.86 has a heap-based buffer overflow in answer_request (called from FuzzAnswerTheRequest and fuzz_rfc1035.c). NOTE: the vendor's position is that CVE-2021-45951 through CVE-2021-45957 "do not represent...

1 affected package

dnsmasq

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsmasq Not affected Not affected Not affected
Show less packages

CVE-2021-45956

Medium priority
Ignored

Dnsmasq 2.86 has a heap-based buffer overflow in print_mac (called from log_packet and dhcp_reply). NOTE: the vendor's position is that CVE-2021-45951 through CVE-2021-45957 "do not represent real vulnerabilities, to the best of...

1 affected package

dnsmasq

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsmasq Not affected Not affected Not affected
Show less packages

CVE-2021-45955

Medium priority
Ignored

Dnsmasq 2.86 has a heap-based buffer overflow in resize_packet (called from FuzzResizePacket and fuzz_rfc1035.c) because of the lack of a proper bounds check upon pseudo header re-insertion. NOTE: the vendor's position is...

1 affected package

dnsmasq

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsmasq Not affected Not affected Not affected
Show less packages

CVE-2021-45954

Medium priority
Ignored

Dnsmasq 2.86 has a heap-based buffer overflow in extract_name (called from answer_auth and FuzzAuth). NOTE: the vendor's position is that CVE-2021-45951 through CVE-2021-45957 "do not represent real vulnerabilities, to the best of...

1 affected package

dnsmasq

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsmasq Not affected Not affected Not affected
Show less packages

CVE-2021-45953

Medium priority
Ignored

Dnsmasq 2.86 has a heap-based buffer overflow in extract_name (called from hash_questions and fuzz_util.c). NOTE: the vendor's position is that CVE-2021-45951 through CVE-2021-45957 "do not represent real vulnerabilities, to the...

1 affected package

dnsmasq

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsmasq Not affected Not affected Not affected
Show less packages

CVE-2021-45952

Medium priority
Ignored

Dnsmasq 2.86 has a heap-based buffer overflow in dhcp_reply (called from dhcp_packet and FuzzDhcp). NOTE: the vendor's position is that CVE-2021-45951 through CVE-2021-45957 "do not represent real vulnerabilities, to the best of...

1 affected package

dnsmasq

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnsmasq Not affected Not affected Not affected
Show less packages