Thekelleys Dnsmasq vulnerabilities
44 known vulnerabilities affecting thekelleys/dnsmasq.
Total CVEs
44
CISA KEV
0
Public exploits
9
Exploited in wild
0
Severity breakdown
CRITICAL10HIGH16MEDIUM14LOW4
Vulnerabilities
Page 3 of 3
CVE-2008-1447MEDIUMCVSS 6.8PoC≥ 0, < 2.43-12008-07-08
CVE-2008-1447 [MEDIUM] CVE-2008-1447: The DNS protocol, as implemented in (1) BIND 8 and 9 before 9
The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; and other implementations allow remote attackers to spoof DNS traffic via a birthday attack that uses in-bailiwick referrals to conduct cache poisoning against recursive resolvers, related to insufficient randomness of DNS
osv
CVE-2006-2017MEDIUMCVSS 5.0≥ 0, < 2.30-12006-04-25
CVE-2006-2017 [MEDIUM] CVE-2006-2017: Dnsmasq 2
Dnsmasq 2.29 allows remote attackers to cause a denial of service (application crash) via a DHCP client broadcast reply request.
osv
CVE-2005-0877HIGHCVSS 7.5fixed in 2.212005-05-02
CVE-2005-0877 [HIGH] CWE-346 CVE-2005-0877: Dnsmasq before 2.21 allows remote attackers to poison the DNS cache via answers to queries that were
Dnsmasq before 2.21 allows remote attackers to poison the DNS cache via answers to queries that were not made by Dnsmasq.
nvdosv
CVE-2005-0876MEDIUMCVSS 5.0≥ 0, < 2.212005-05-02
CVE-2005-0876 [MEDIUM] CVE-2005-0876: Off-by-one buffer overflow in Dnsmasq before 2
Off-by-one buffer overflow in Dnsmasq before 2.21 may allow attackers to execute arbitrary code via the DHCP lease file.
osv
← Previous3 / 3