CVE-2017-14496
03.10.2017, 01:29
Integer underflow in the add_pseudoheader function in dnsmasq before 2.78 , when the --add-mac, --add-cpe-id or --add-subnet option is specified, allows remote attackers to cause a denial of service via a crafted DNS request.
| Vendor | Product | Version |
|---|---|---|
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 17.04 |
| debian | debian_linux | 7.0 |
| debian | debian_linux | 7.1 |
| debian | debian_linux | 9.0 |
| android | 4.4.4 | |
| android | 5.0.2 | |
| android | 5.1.1 | |
| android | 6.0 | |
| android | 6.0.1 | |
| android | 7.0 | |
| android | 7.1.1 | |
| android | 7.1.2 | |
| android | 8.0 | |
| novell | leap | 42.2 |
| novell | leap | 42.3 |
| redhat | enterprise_linux_desktop | 7.0 |
| redhat | enterprise_linux_server | 7.0 |
| redhat | enterprise_linux_workstation | 7.0 |
| thekelleys | dnsmasq | 𝑥 ≤ 2.77 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References