Lucene search

K
oraclelinuxOracleLinuxELSA-2023-7046
HistoryNov 17, 2023 - 12:00 a.m.

dnsmasq security and bug fix update

2023-11-1700:00:00
linux.oracle.com
22
dnsmasq
bug fix
security update
version 2.79-27
version 2.79-31
cve-2023-28450
edns0
logfile
root
resolvers
dbus

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

0.003 Low

EPSS

Percentile

68.1%

[2.79-31]

  • Do not create and search --local and --address=/x/# domains (#2233542)
    [2.79-30]
  • Make create logfile writeable by root (#2156789)
    [2.79-29]
  • Fix also dynamically set resolvers over dbus (#2186481)
    [2.79-28]
  • Correct possible crashes when server=/example.net/# is used (#2186481)
    [2.79-27]
  • Limit offered EDNS0 size to 1232 (CVE-2023-28450)

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

0.003 Low

EPSS

Percentile

68.1%