← Back

CVE-2026-12725

nvd nist
Published: Jun 22, 2026Modified: Jul 8, 2026

JSON object

Loading...
5.9
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.2 / Impact: 3.6
Source: secalert@redhat.com (Secondary)

Description

A heap-based buffer overflow was found in dnsmasq. When DNSSEC validation and query logging are both enabled, logging of DS or DNSKEY replies containing unsupported algorithm or digest types can cause dnsmasq to write past the end of an internal logging buffer. A remote attacker able to supply such a DNS response may crash the dnsmasq process, resulting in denial of service.

Affected (5)

2 products
Enterprise Linux
Openshift Container Platform
1 product
Dnsmasq
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Redhat
Version 10.0
Version 8.0
Version 9.0
From 4.0 to 4.22.1
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 2.93

References (2)

Source: secalert@redhat.com
MitigationVendor Advisory
Source: secalert@redhat.com
Issue TrackingVendor Advisory

Timeline

No history available yet.