Heap-based Out-of-Bounds Read in dnsmasq Affects DNS Resolution
CVE-2026-4891
5.3MEDIUM
What is CVE-2026-4891?
A heap-based out-of-bounds read vulnerability in the DNSSEC validation process of dnsmasq could allow remote attackers to execute denial of service attacks by sending specially crafted DNS packets. This vulnerability exploits flaws in the memory management of dnsmasq, a popular DNS forwarding service, potentially disrupting network operations for affected systems.
Affected Version(s)
dnsmasq 2.92rel2
