VDB

MAGEIA-2021-231

MAGEIA-2021-231 PUBLISHED

A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier (CVE-2021-3448). This kind of configuration is the default when network-manager uses dnsmasq.

Affected Products

VendorProductVersions
Mageiaperl-URPM0, 5.222-1.mga8
Mageiadnsmasq0, 0, 2.85-1.mga7
Mageiadnsmasq2.85-1.mga8, 0, 0

Timeline

  • Jun 7, 2021 CVE Updated
  • Jun 8, 2021 CVE Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›