Oval Definition:oval:com.redhat.rhsa:def:20210153
Revision Date:2021-01-19Version:636
Title:RHSA-2021:0153: dnsmasq security update (Moderate)
Description:The dnsmasq packages contain Dnsmasq, a lightweight DNS (Domain Name Server) forwarder and DHCP (Dynamic Host Configuration Protocol) server.

Security Fix(es):

  • dnsmasq: loose address/port check in reply_query() makes forging replies easier for an off-path attacker (CVE-2020-25684)

  • dnsmasq: loose query name check in reply_query() makes forging replies easier for an off-path attacker (CVE-2020-25685)

  • dnsmasq: multiple queries forwarded for the same name makes forging replies easier for an off-path attacker (CVE-2020-25686)

    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2020-25684
    CVE-2020-25685
    CVE-2020-25686
    RHSA-2021:0153
    Platform(s):Red Hat Enterprise Linux 7
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 7 is installed
  • AND
  • dnsmasq is earlier than 0:2.76-16.el7_9.1
  • AND dnsmasq is signed with Red Hat redhatrelease2 key
  • dnsmasq-utils is earlier than 0:2.76-16.el7_9.1
  • AND dnsmasq-utils is signed with Red Hat redhatrelease2 key
  • BACK