CVE-2025-12199: dnsmasq Config File network.c check_servers null pointer dereference
Rejected reason: REJECT DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: Based on the analysis by MITRE and review of community feedback, the reported conditions represent expected and intentional behavior within dnsmasq's documented design, rather than security vulnerabilities.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-12199?
CVE-2025-12199 has a medium severity due to the potential for local denial of service through null pointer dereference.
How do I fix CVE-2025-12199?
To fix CVE-2025-12199, upgrade dnsmasq to version 2.73rc7 or later.
What systems are affected by CVE-2025-12199?
CVE-2025-12199 affects dnsmasq versions up to 2.73rc6.
Is CVE-2025-12199 exploitable remotely?
No, CVE-2025-12199 requires local access to exploit the vulnerability.
What component of dnsmasq does CVE-2025-12199 affect?
CVE-2025-12199 specifically affects the check_servers function in the Config File Handler component.