CVE-2017-14491 EXPLOIT
9.8
CRITICAL · CVSS 3.1 · EPSS 84.9% (pctl 100)
Patch early
A public exploit exists.
Description
Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response.
Scoring
| CVSS | 9.8 (CRITICAL, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 84.93% — more likely to be exploited than 100% of all CVEs |
| Weakness | CWE-787 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2017-10-04 |
| Last modified | 2026-06-17 |
Affected (29)
| Vendor | Product |
|---|---|
| arista | eos |
| arubanetworks | arubaos |
| canonical | ubuntu linux |
| debian | debian linux |
| huawei | honor v9 play |
| huawei | honor v9 play firmware |
| microsoft | windows |
| nvidia | geforce experience |
| nvidia | jetson tk1 |
| nvidia | jetson tx1 |
| nvidia | linux for tegra |
| opensuse | leap |
| redhat | enterprise linux desktop |
| redhat | enterprise linux server |
| redhat | enterprise linux workstation |
| siemens | ruggedcom rm1224 |
| siemens | ruggedcom rm1224 firmware |
| siemens | scalance m-800 |
| siemens | scalance m-800 firmware |
| siemens | scalance s615 |
| siemens | scalance s615 firmware |
| siemens | scalance w1750d |
| siemens | scalance w1750d firmware |
| suse | linux enterprise debuginfo |
| suse | linux enterprise point of sale |
| suse | linux enterprise server |
| synology | diskstation manager |
| synology | router manager |
| thekelleys | dnsmasq |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Dnsmasq < 2.78 - 2-byte Heap Overflow | 2017-10-02 |
References
- http://lists.opensuse.org/opensuse-security-announce/2017-10/msg00003.html
- http://lists.opensuse.org/opensuse-security-announce/2017-10/msg00004.html
- http://lists.opensuse.org/opensuse-security-announce/2017-10/msg00005.html
- http://lists.opensuse.org/opensuse-security-announce/2017-10/msg00006.html
- http://nvidia.custhelp.com/app/answers/detail/a_id/4560
- http://nvidia.custhelp.com/app/answers/detail/a_id/4561
- http://packetstormsecurity.com/files/144480/Dnsmasq-2-Byte-Heap-Based-Overflow.html
- http://thekelleys.org.uk/dnsmasq/CHANGELOG
- http://thekelleys.org.uk/gitweb/?p=dnsmasq.git%3Ba=commit%3Bh=0549c73b7ea6b22a3c49beb4d432f185a81efcbc
- http://www.arubanetworks.com/assets/alert/ARUBA-PSA-2017-005.txt
- http://www.debian.org/security/2017/dsa-3989
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171103-01-dnsmasq-en
- http://www.securityfocus.com/bid/101085
- http://www.securityfocus.com/bid/101977
- http://www.securitytracker.com/id/1039474
- http://www.ubuntu.com/usn/USN-3430-1
- http://www.ubuntu.com/usn/USN-3430-2
- http://www.ubuntu.com/usn/USN-3430-3
- https://access.redhat.com/errata/RHSA-2017:2836
- https://access.redhat.com/errata/RHSA-2017:2837
→ the Explorer · watch your stack · NVD