REDHAT-BUG-2486360: Low severity dnsmasq vulnerability
Published Jun 8, 2026
·Updated
A flow has been identified into dnssec.c library, causing an infinite loop to dnsmasq service. An attacker who controls any DNSSEC-signed zone can hang the dnsmasq process with a single crafted response, killing all DNS resolution for its clients.
Affected Software
1 affected component
dnsmasq
Event History
Jun 8, 2026
Data Sourced
via Red Hat·02:14 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2486360?
The severity of REDHAT-BUG-2486360 is classified as low.
2
How does REDHAT-BUG-2486360 affect the dnsmasq service?
REDHAT-BUG-2486360 can cause an infinite loop in the dnsmasq service, leading to DNS resolution failures for clients.
3
Who can exploit REDHAT-BUG-2486360?
An attacker who controls any DNSSEC-signed zone can exploit REDHAT-BUG-2486360.
4
What is the impact of REDHAT-BUG-2486360 on DNS resolution?
The impact of REDHAT-BUG-2486360 is the potential complete hang of the dnsmasq process, disrupting DNS resolution.
5
Is there a fix available for REDHAT-BUG-2486360?
As of now, specific mitigation or fix details for REDHAT-BUG-2486360 have not been provided.