CVE-2017-14491: Buffer Overflow

Published Sep 26, 2017
·
Updated

Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response.

Other sources

Red Hat Product Security has been made aware of a heap-based buffer overflow affecting the DNS implementation of dnsmasq.

Red Hat

Affected Software

76 affected componentsFixes available
debian/dnsmasq
2.80-1+deb10u12.85-12.89-1
redhat/dnsmasq<2.78
2.78
Google Android
thekelleys dnsmasq<=2.77
redhat Enterprise Linux Desktop=6.0
redhat Enterprise Linux Desktop=7.0
redhat Enterprise Linux Server=6.0
redhat Enterprise Linux Server=7.0
redhat Enterprise Linux Workstation=6.0
redhat Enterprise Linux Workstation=7.0
Canonical Ubuntu Linux=12.04
Canonical Ubuntu Linux=12.04
Canonical Ubuntu Linux=14.04
Canonical Ubuntu Linux=16.04
Canonical Ubuntu Linux=17.04
Debian Debian Linux=7.0
Debian Debian Linux=7.1
Debian Debian Linux=8.0
Debian Debian Linux=9.0
openSUSE Leap=42.2
openSUSE Leap=42.3
SUSE Linux Enterprise Debuginfo=11-sp3
SUSE Linux Enterprise Debuginfo=11-sp4
SUSE Linux Enterprise Point of Sale=11-sp3
SUSE Linux Enterprise Server=11-sp3
SUSE Linux Enterprise Server=11-sp4
SUSE Linux Enterprise Server=12
All of the following
Nvidia Linux For Tegra<r21.6
Nvidia Jetson Tk1
All of the following
Nvidia Linux For Tegra<r24.2.2
Nvidia Jetson TX1
All of the following
Nvidia GeForce Experience>=3.0<3.10.0.55
Microsoft Windows
All of the following
Huawei Honor V9 Play Firmware<jimmy-al00ac00b135
Huawei Honor V9 play
Arista EOS<=4.15
Arista EOS>=4.16<4.16.13m
Arista EOS>=4.17<4.17.8m
Arista EOS>=4.18<=4.18.4.2f
All of the following
Siemens Ruggedcom Rm1224 Firmware<5.0
Siemens RUGGEDCOM RM1224
All of the following
Siemens Scalance M-800 Firmware<5.0
Siemens SCALANCE M-800
All of the following
Siemens Scalance S615 Firmware<5.0
Siemens SCALANCE S615
All of the following
Siemens Scalance W1750d Firmware<6.5.1.5
Siemens SCALANCE W1750D
Arubanetworks Arubaos>=6.3.1<6.3.1.25
Arubanetworks Arubaos>=6.4.4.0<6.4.4.16
Arubanetworks Arubaos>=6.5.0.0<6.5.1.9
Arubanetworks Arubaos>=6.5.3.0<6.5.3.3
Arubanetworks Arubaos>=6.5.4.0<6.5.4.2
Arubanetworks Arubaos>=8.1.0.0<8.1.0.4
Synology Router Manager=1.1
Synology Diskstation Manager=5.2
Synology Diskstation Manager=6.0
Synology Diskstation Manager=6.1
Nvidia Linux For Tegra<r21.6
Nvidia Jetson Tk1
Nvidia Linux For Tegra<r24.2.2
Nvidia Jetson TX1
Nvidia GeForce Experience>=3.0<3.10.0.55
Microsoft Windows
Huawei Honor V9 Play Firmware<jimmy-al00ac00b135
Huawei Honor V9 play
Siemens Ruggedcom Rm1224 Firmware<5.0
Siemens RUGGEDCOM RM1224
Siemens Scalance M-800 Firmware<5.0
Siemens SCALANCE M-800
Siemens Scalance S615 Firmware<5.0
Siemens SCALANCE S615
Siemens Scalance W1750d Firmware<6.5.1.5
Siemens SCALANCE W1750D
Synology Diskstation Manager=5.2
Synology Diskstation Manager=6.0
Synology Diskstation Manager=6.1

Event History

Oct 2, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Mar 1, 2021
Data Sourced
via Android·12:00 AM
SeverityWeaknessAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2017-14491?

CVE-2017-14491 is classified as a high severity vulnerability due to its potential to cause denial of service or execute arbitrary code remotely.

2

How do I fix CVE-2017-14491?

To fix CVE-2017-14491, upgrade dnsmasq to version 2.80 or later on affected Debian systems, or to 2.78 for Red Hat systems.

3

What systems are affected by CVE-2017-14491?

CVE-2017-14491 affects multiple systems including Debian, Red Hat, and various Linux distributions using dnsmasq versions prior to 2.78.

4

What type of vulnerability is CVE-2017-14491?

CVE-2017-14491 is a heap-based buffer overflow vulnerability specifically within the DNS implementation of dnsmasq.

5

Can CVE-2017-14491 be exploited remotely?

Yes, CVE-2017-14491 can be exploited remotely via crafted DNS responses, making it a critical threat.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203