CVE-2017-14491
critical · 9.8Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response.
9.8
CVSS
84.9%
EPSS (exploit prob.)
100th
EPSS percentile
2017-10-04
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-787
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| thekelleys | dnsmasq | <= 2.77 |
| redhat | enterprise_linux_desktop | 6.0 |
| redhat | enterprise_linux_desktop | 7.0 |
| redhat | enterprise_linux_server | 6.0 |
| redhat | enterprise_linux_server | 7.0 |
| redhat | enterprise_linux_workstation | 6.0 |
| redhat | enterprise_linux_workstation | 7.0 |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 17.04 |
| debian | debian_linux | 7.0 |
| debian | debian_linux | 7.1 |
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
| opensuse | leap | 42.2 |
| opensuse | leap | 42.3 |
| suse | linux_enterprise_debuginfo | 11 |
| suse | linux_enterprise_debuginfo | 11 |
| suse | linux_enterprise_point_of_sale | 11 |
| suse | linux_enterprise_server | 11 |
| suse | linux_enterprise_server | 11 |
| suse | linux_enterprise_server | 12 |
| nvidia | linux_for_tegra | < r21.6 |
| nvidia | jetson_tk1 | all versions |
| nvidia | linux_for_tegra | < r24.2.2 |
| nvidia | jetson_tx1 | all versions |
| nvidia | geforce_experience | >= 3.0, < 3.10.0.55 |
| microsoft | windows | all versions |
| huawei | honor_v9_play_firmware | < jimmy-al00ac00b135 |
| huawei | honor_v9_play | all versions |
| arista | eos | <= 4.15 |
| arista | eos | >= 4.16, < 4.16.13m |
| arista | eos | >= 4.17, < 4.17.8m |
| arista | eos | >= 4.18, <= 4.18.4.2f |
| siemens | ruggedcom_rm1224_firmware | < 5.0 |
| siemens | ruggedcom_rm1224 | all versions |
| siemens | scalance_m-800_firmware | < 5.0 |
| siemens | scalance_m-800 | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://lists.opensuse.org/opensuse-security-announce/2017-10/msg00003.html
- http://lists.opensuse.org/opensuse-security-announce/2017-10/msg00004.html
- http://lists.opensuse.org/opensuse-security-announce/2017-10/msg00005.html
- http://lists.opensuse.org/opensuse-security-announce/2017-10/msg00006.html
- http://nvidia.custhelp.com/app/answers/detail/a_id/4560
- http://nvidia.custhelp.com/app/answers/detail/a_id/4561
- http://packetstormsecurity.com/files/144480/Dnsmasq-2-Byte-Heap-Based-Overflow.html
- http://thekelleys.org.uk/dnsmasq/CHANGELOG
- http://thekelleys.org.uk/gitweb/?p=dnsmasq.git%3Ba=commit%3Bh=0549c73b7ea6b22a3c49beb4d432f185a81efcbc
- http://www.arubanetworks.com/assets/alert/ARUBA-PSA-2017-005.txt
- http://www.debian.org/security/2017/dsa-3989
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171103-01-dnsmasq-en
- http://www.securityfocus.com/bid/101085
- http://www.securityfocus.com/bid/101977
- http://www.securitytracker.com/id/1039474
- http://www.ubuntu.com/usn/USN-3430-1
- http://www.ubuntu.com/usn/USN-3430-2
- http://www.ubuntu.com/usn/USN-3430-3
- https://access.redhat.com/errata/RHSA-2017:2836
- https://access.redhat.com/errata/RHSA-2017:2837
- https://access.redhat.com/errata/RHSA-2017:2838
- https://access.redhat.com/errata/RHSA-2017:2839
- https://access.redhat.com/errata/RHSA-2017:2840
- https://access.redhat.com/errata/RHSA-2017:2841
- https://access.redhat.com/security/vulnerabilities/3199382
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2017-14491