ELSA-2023-6524

ELSA-2023-6524 - dnsmasq security and bug fix update

Type:SECURITY
Impact:MODERATE
Release Date:2023-11-11

Description


[2.85-14]
- Backport Coverity fix to hide detected issue (#2156789)

[2.85-13]
- Rebuild with modified gating settings

[2.85-12]
- Make create logfile writeable by root (#2156789)

[2.85-11]
- Do not create and search --local and --address=/x/# domains (#2209031)

[2.85-10]
- Fix also dynamically set resolvers over dbus (#2186481)

[2.85-9]
- Properly initialize domain parameter in dnssec mode (#2182342)

[2.85-8]
- Correct possible crashes when server=/example.net/# is used (#2188712)

[2.85-7]
- Limit offered EDNS0 size 1232 (CVE-2023-28450)


Related CVEs


CVE-2023-28450

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) dnsmasq-2.85-14.el9.src.rpm0cc06e9a1dab70f9c1702d6f33ea79ebe9bfa6abbaa7dde3d4d7453f79a98a72-ol9_aarch64_appstream
dnsmasq-2.85-14.el9.aarch64.rpm838dbcc00e7582b5fedef747eb9bdc427a207739cfb1fb4003ac15c2984e0294-ol9_aarch64_appstream
dnsmasq-utils-2.85-14.el9.aarch64.rpmfab64931f5afc506e12d99e8c24341037eab01a02112c570ee3a46fa7d719c63-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) dnsmasq-2.85-14.el9.src.rpm0cc06e9a1dab70f9c1702d6f33ea79ebe9bfa6abbaa7dde3d4d7453f79a98a72-ol9_x86_64_appstream
dnsmasq-2.85-14.el9.x86_64.rpm5504c82ae02f8704019c4a1108b3764b40f69642baa5c86a9c44fa8006d7d53e-ol9_x86_64_appstream
dnsmasq-utils-2.85-14.el9.x86_64.rpm954cfb293654501fff521dad7afa09d2e590a9ea70b791b52af092dbade3a64b-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete