Number: AV17-147
Date: 04 October 2017
Purpose
The purpose of this advisory is to bring attention to multiple dnsmasq security updates.
Assessment
GNU dnsmasq released security updates to address multiple vulnerabilities in dnsmasq. A remote user could exploit some of these vulnerabilities to take control of an affected system.
Versions Affected:
GNU dnsmasq 2.62 to 2.77
CVE References: CVE-2017-13704, CVE-2017-14491,CVE-2017-14492,CVE-2017-14493,CVE-2017-14494,CVE-2017-14495,CVE-2017-14496
Suggested Action
CCIRC recommends that system administrators test and deploy the vendor-released updates to affected applications accordingly.
References: