CVE-2026-13002
4.4
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
Exploitability: 0.8 / Impact: 3.6
Source: secalert@redhat.com (Secondary)
Description
A flow has been identified into dnssec.c library, causing an infinite loop to dnsmasq service. An attacker who controls any DNSSEC-signed zone can hang the dnsmasq process with a single crafted response, killing all DNS resolution for its clients.
Affected (6)
Products: Redhat: Enterprise Linux, Openshift Container Platform
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 10.0 | |
| Version 4.0 |
References (2)
Source: secalert@redhat.com
Issue TrackingVendor Advisory
Timeline
No history available yet.