Denial of Service Vulnerability in dnsmasq Affects Users
CVE-2026-4890

7.5HIGH

Key Information:

Vendor

Dnsmasq

Status
Vendor
CVE Published:
11 May 2026

What is CVE-2026-4890?

A Denial of Service vulnerability exists in the DNSSEC validation of dnsmasq, which can be exploited by remote attackers. By sending specially crafted DNS packets, attackers can disrupt service availability, potentially leading to significant downtime for affected systems. It is crucial for users and administrators to apply the necessary patches and updates to protect against this emerging threat.

Affected Version(s)

dnsmasq 2.92rel2

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.