VDB

CVE-2021-3448

CVE-2021-3448 PUBLISHED

A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.

EPSS 0.04% · 14.0th percentile

Risk Scores

EPSS Score
0.04%
14.0th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSdnsmasq2.80-1.1ubuntu1.3, 2.80-1.1ubuntu1.2, 0
Ubuntu:18.04:LTSdnsmasq2.78-3, 2.79-1ubuntu0.2, 2.79-1
Ubuntu:Pro:16.04:LTSdnsmasq2.75-1ubuntu0.16.04.2, 2.75-1ubuntu0.16.04.5, 2.75-1ubuntu0.16.04.7
Ubuntu:Pro:14.04:LTSdnsmasq2.67-1, *, 2.68-1ubuntu0.2

Exploit Intelligence

Timeline

  • CVE Published
  • Apr 14, 2021 EPSS Score
  • Apr 27, 2021 EPSS Score
  • Jun 11, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 8, 2022 EPSS Score
  • Feb 28, 2022 EPSS Score
  • May 1, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›