GHSA-hjxh-hmm9-wcmcHighCVSS 7.3

dnsmasqs extract_name() function can be abused to cause a heap buffer overflow, allowing an...

Published
May 11, 2026
Last Modified
July 20, 2026

🔗 CVE IDs covered (1)

📋 Description

dnsmasqs extract_name() function can be abused to cause a heap buffer overflow, allowing an attacker to inject false DNS cache entries, which could result in DNS lookups to redirect to an attacker-controlled IP address, or to cause a DoS.

🔗 References (11)