REDHAT-BUG-2057075: Use After Free
A flaw was found in dnsmasq. A heap use after free issue in the dhcp6 server may lead to remote denial of service via crafted packet.
References:
https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2022q1/016272.html
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2057075?
REDHAT-BUG-2057075 has been classified as a medium severity vulnerability due to its potential for causing a denial of service.
How do I fix REDHAT-BUG-2057075?
To fix REDHAT-BUG-2057075, you should update to the latest patched version of dnsmasq provided by your distribution.
What is the impact of REDHAT-BUG-2057075 on my system?
The impact of REDHAT-BUG-2057075 may lead to a remote denial of service attack if exploited via crafted packets targeting the DHCPv6 server.
Is REDHAT-BUG-2057075 exploitable remotely?
Yes, REDHAT-BUG-2057075 is exploitable remotely as it allows attackers to send crafted packets to the DHCPv6 server.
What versions of dnsmasq are affected by REDHAT-BUG-2057075?
REDHAT-BUG-2057075 affects multiple versions of dnsmasq that include the vulnerable DHCP6 server configuration.