Dnsmasq before 2.21 allows remote attackers to poison the DNS cache via answers to queries that were not made by Dnsmasq.
The product does not properly verify that the source of data or communication is valid.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/19826 | vdb entry third party advisory |
http://secunia.com/advisories/14691 | broken link third party advisory patch vendor advisory |
http://www.thekelleys.org.uk/dnsmasq/CHANGELOG | release notes |
http://www.securityfocus.com/bid/12897 | patch vdb entry third party advisory broken link |