CVE-2017-14491: Buffer Overflow
Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response.
Other sources
Red Hat Product Security has been made aware of a heap-based buffer overflow affecting the DNS implementation of dnsmasq.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-14491?
CVE-2017-14491 is classified as a high severity vulnerability due to its potential to cause denial of service or execute arbitrary code remotely.
How do I fix CVE-2017-14491?
To fix CVE-2017-14491, upgrade dnsmasq to version 2.80 or later on affected Debian systems, or to 2.78 for Red Hat systems.
What systems are affected by CVE-2017-14491?
CVE-2017-14491 affects multiple systems including Debian, Red Hat, and various Linux distributions using dnsmasq versions prior to 2.78.
What type of vulnerability is CVE-2017-14491?
CVE-2017-14491 is a heap-based buffer overflow vulnerability specifically within the DNS implementation of dnsmasq.
Can CVE-2017-14491 be exploited remotely?
Yes, CVE-2017-14491 can be exploited remotely via crafted DNS responses, making it a critical threat.