Dnsmasq 2.72 Unchecked Return Value

Discussion in 'News Aggregator' started by Packet Storm, 24 Apr 2015.

  1. Packet Storm

    Packet Storm Guest

    Dnsmasq version 2.72 does not properly check the return value of the setup_reply() function called during a tcp connection (by the tcp_request() function). This return value is then used as a size argument in a function which writes data on the client's connection. This may lead, upon successful exploitation, to reading the heap memory of dnsmasq.

    Continue reading...
     

Share This Page

Loading...