← Back

CVE-2017-14491

nvd nist
Published: Oct 4, 2017Modified: May 13, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response.

Affected (46)

Show all products
1 product
Dnsmasq
3 products
Enterprise Linux Desktop
Enterprise Linux Server
Enterprise Linux Workstation
1 product
Ubuntu Linux
1 product
Debian Linux
1 product
Leap
3 products
Linux Enterprise Debuginfo
Linux Enterprise Point Of Sale
Linux Enterprise Server
2 products
Linux For Tegra
Geforce Experience
1 product
Honor V9 Play Firmware
1 product
Eos
4 products
Ruggedcom Rm1224 Firmware
Scalance M 800 Firmware
Scalance S615 Firmware
Scalance W1750d Firmware
1 product
Arubaos
2 products
Diskstation Manager
Router Manager
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.77
Configuration B
6 vulnerable
Vulnerable SoftwareAffected Versions
Redhat
Version 6.0
Version 7.0
Redhat
Version 6.0
Version 7.0
Redhat
Version 6.0
Version 7.0
Configuration C
5 vulnerable
Vulnerable SoftwareAffected Versions
Canonical
Version 12.04
Version 12.04
Version 14.04
Version 16.04
Version 17.04
Configuration D
4 vulnerable
Vulnerable SoftwareAffected Versions
Debian
Version 7.0
Version 7.1
Version 8.0
Version 9.0
Configuration E
2 vulnerable
Vulnerable SoftwareAffected Versions
Opensuse
Version 42.2
Version 42.3
Configuration F
6 vulnerable
Vulnerable SoftwareAffected Versions
Suse
Version 11 sp3
Version 11 sp4
Version 11 sp3
Suse
Version 11 sp3
Version 11 sp4
Version 12
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before r21.6
Running on/withPlatform Versions
Nvidia
Jetson Tk1
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before r24.2.2
Running on/withPlatform Versions
Nvidia
Jetson Tx1
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 3.0 to 3.10.0.55
Running on/withPlatform Versions
Microsoft
Windows
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before jimmy-al00ac00b135
Running on/withPlatform Versions
Huawei
Honor V9 Play
All versions
Configuration K
4 vulnerable
Vulnerable SoftwareAffected Versions
Arista
Up to 4.15
From 4.16 to 4.16.13m
From 4.17 to 4.17.8m
From 4.18 to 4.18.4.2f
Configuration L
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 5.0
Running on/withPlatform Versions
Siemens
Ruggedcom Rm1224
All versions
Configuration M
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 5.0
Running on/withPlatform Versions
Siemens
Scalance M 800
All versions
Configuration N
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 5.0
Running on/withPlatform Versions
Siemens
Scalance S615
All versions
Configuration O
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 6.5.1.5
Running on/withPlatform Versions
Siemens
Scalance W1750d
All versions
Configuration P
6 vulnerable
Vulnerable SoftwareAffected Versions
Arubanetworks
From 6.3.1 to 6.3.1.25
From 6.4.4.0 to 6.4.4.16
From 6.5.0.0 to 6.5.1.9
From 6.5.3.0 to 6.5.3.3
From 6.5.4.0 to 6.5.4.2
From 8.1.0.0 to 8.1.0.4
Configuration Q
4 vulnerable
Vulnerable SoftwareAffected Versions
Synology
Version 5.2
Version 6.0
Version 6.1
Version 1.1

References (80)

Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
ExploitThird Party AdvisoryVDB Entry
Source: cve@mitre.org
Release NotesVendor Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Broken Link
Source: cve@mitre.org
Broken Link
Source: cve@mitre.org
Broken Link
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
PatchThird Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
ExploitThird Party AdvisoryVDB Entry
Source: cve@mitre.org
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Release NotesVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.