CVE-2021-45954: Buffer Overflow
Published Dec 31, 2021
·Updated
DISPUTED Dnsmasq 2.86 has a heap-based buffer overflow in extractname (called from answerauth and FuzzAuth). NOTE: the vendor's position is that CVE-2021-45951 through CVE-2021-45957 "do not represent real vulnerabilities, to the best of our knowledge."
Affected Software
1 affected component
thekelleys dnsmasq=2.86
Event History
Dec 31, 2021
CVE Published
via MITRE·11:53 PM
Data Sourced
via MITRE·11:53 PM
Description
Jan 1, 2022
Disputed
12:15 AM
Data Sourced
via NVD·12:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-45954?
CVE-2021-45954 is a heap-based buffer overflow vulnerability in Dnsmasq version 2.86.
2
What is the severity of CVE-2021-45954?
CVE-2021-45954 has a severity rating of 9.8, which is considered critical.
3
How does CVE-2021-45954 affect Dnsmasq?
CVE-2021-45954 affects Dnsmasq version 2.86.
4
How can I fix CVE-2021-45954?
To fix CVE-2021-45954, update Dnsmasq to a version that is not affected by the vulnerability.
5
Where can I find more information about CVE-2021-45954?
More information about CVE-2021-45954 can be found in the references provided: [reference1], [reference2], [reference3].