ELSA-2021-0153

ELSA-2021-0153 - dnsmasq security update

Type:SECURITY
Severity:MODERATE
Release Date:2021-01-19

Description


[2.76-16.1]
- Accept responses only on correct sockets (CVE-2020-25684)
- Use strong verification on queries (CVE-2020-25685)
- Handle multiple identical DNS queries better (CVE-2020-25686)
- Link against nettle for sha256 hash implementation


Related CVEs


CVE-2020-25684
CVE-2020-25685
CVE-2020-25686

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (aarch64) dnsmasq-2.76-16.el7_9.1.src.rpm1484b0f73453b55be7e2b91af182d04fELBA-2021-1391
dnsmasq-2.76-16.el7_9.1.aarch64.rpm4e2e8b4e40f9a478a25f544c9ba5d62bELBA-2021-1391
dnsmasq-utils-2.76-16.el7_9.1.aarch64.rpmdb8e019bf034adab9f00e108d04d64ccELBA-2021-1391
Oracle Linux 7 (x86_64) dnsmasq-2.76-16.el7_9.1.src.rpm1484b0f73453b55be7e2b91af182d04fELBA-2021-1391
dnsmasq-2.76-16.el7_9.1.x86_64.rpm9000e027c3b678058a90bd02f2e3e31aELBA-2021-1391
dnsmasq-utils-2.76-16.el7_9.1.x86_64.rpmb78878806535a1f1ec12cbc8904535eeELBA-2021-1391



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete