CVE-2021-45957: Buffer Overflow
Published Dec 31, 2021
·Updated
DISPUTED Dnsmasq 2.86 has a heap-based buffer overflow in answerrequest (called from FuzzAnswerTheRequest and fuzzrfc1035.c). NOTE: the vendor's position is that CVE-2021-45951 through CVE-2021-45957 "do not represent real vulnerabilities, to the best of our knowledge."
Affected Software
1 affected component
thekelleys dnsmasq=2.86
Event History
Dec 31, 2021
CVE Published
via MITRE·11:53 PM
Data Sourced
via MITRE·11:53 PM
Description
Jan 1, 2022
Disputed
12:15 AM
Data Sourced
via NVD·12:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-45957?
The severity of CVE-2021-45957 is critical with a severity value of 9.8.
2
What is the affected software for CVE-2021-45957?
The affected software for CVE-2021-45957 is Dnsmasq version 2.86.
3
What is the vendor's position on CVE-2021-45957?
The vendor's position is that CVE-2021-45957 "does not represent a real vulnerability, to the best of our knowledge."
4
How can I fix CVE-2021-45957?
To fix CVE-2021-45957, it is recommended to update to the latest version of Dnsmasq.
5
What are the Common Weakness Enumerations (CWE) associated with CVE-2021-45957?
The Common Weakness Enumerations (CWE) associated with CVE-2021-45957 are CWE-119 and CWE-787.