CVE-2019-14834

Severity
3.7LOW
EPSS
0.0%
top 87.40%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 7
Latest updateAug 11

Description

A vulnerability was found in dnsmasq before version 2.81, where the memory leak allows remote attackers to cause a denial of service (memory consumption) via vectors involving DHCP response creation.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:LExploitability: 2.2 | Impact: 1.4

Affected Packages3 packages

NVDthekelleys/dnsmasq< 2.81
Debiandnsmasq< 2.81-1+3
CVEListV5the_dnsmasq_project/dnsmasqbefore 2.81

Also affects: Fedora 31

Patches

🔴Vulnerability Details

3
GHSA
GHSA-rwmq-3523-q2pg: A vulnerability was found in dnsmasq before version 22022-05-24
CVEList
CVE-2019-14834: A vulnerability was found in dnsmasq before version 22020-01-07
OSV
CVE-2019-14834: A vulnerability was found in dnsmasq before version 22020-01-07

📋Vendor Advisories

5
Ubuntu
Dnsmasq vulnerability2025-08-11
Ubuntu
Dnsmasq vulnerabilities2021-01-19
Microsoft
A vulnerability was found in dnsmasq before version 2.81 where the memory leak allows remote attackers to cause a denial of service (memory consumption) via vectors involving DHCP response creation.2020-01-14
Red Hat
dnsmasq: memory leak in the create_helper() function in /src/helper.c2019-10-23
Debian
CVE-2019-14834: dnsmasq - A vulnerability was found in dnsmasq before version 2.81, where the memory leak ...2019

💬Community

2
Bugzilla
CVE-2019-14834 dnsmasq: memory leak in in a infinite while(1) loop in the create_helper() function in /src/helper.c [fedora-all]2019-10-23
Bugzilla
CVE-2019-14834 dnsmasq: memory leak in the create_helper() function in /src/helper.c2019-10-23
CVE-2019-14834 (LOW CVSS 3.7) | A vulnerability was found in dnsmas | cvebase.io