VDB

CVE-2021-3448

CVE-2021-3448 PUBLISHED CVSS 4 MEDIUM

A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.

EPSS 2.29% · 82.6th percentile

Risk Scores

CVSS 3.1
4
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N
EPSS Score
2.29%
82.6th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSdnsmasq2.80-1.1ubuntu1.3, 2.80-1.1ubuntu1.2, 0
Ubuntu:18.04:LTSdnsmasq2.78-3, 2.79-1ubuntu0.2, 2.79-1
Ubuntu:Pro:16.04:LTSdnsmasq2.75-1ubuntu0.16.04.2, 2.75-1ubuntu0.16.04.5, 2.75-1ubuntu0.16.04.7
Ubuntu:Pro:14.04:LTSdnsmasq2.67-1, *, 2.68-1ubuntu0.2

Timeline

  • Apr 8, 2021 CVE Published
  • Apr 14, 2021 EPSS Score
  • Apr 27, 2021 EPSS Score
  • Jun 11, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 25, 2021 EPSS Score
  • Dec 28, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 8, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 3, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›