GNU dnsmasq security updates

Number: AV17-147
Date: 04 October 2017

Purpose

The purpose of this advisory is to bring attention to multiple dnsmasq security updates.

Assessment

GNU dnsmasq released security updates to address multiple vulnerabilities in dnsmasq. A remote user could exploit some of these vulnerabilities to take control of an affected system.

Versions Affected:

GNU dnsmasq 2.62 to 2.77

CVE References: CVE-2017-13704, CVE-2017-14491,CVE-2017-14492,CVE-2017-14493,CVE-2017-14494,CVE-2017-14495,CVE-2017-14496

Suggested Action

CCIRC recommends that system administrators test and deploy the vendor-released updates to affected applications accordingly.

References:

Date modified: