DNSmasq sort_rrset Heap OOB Write

Strike ID:
E21-a40j1
CVSS:
5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
False Positive:
t
Variants:
1
Year:
2020

Description

This strike simulates a heap out-of-bounds write vulnerability in DNSmasq. The vulnerability is due to no string null byte check when sorting RR records in the sort_rrset() function. Successful exploitation may result in arbitrary code execution with privileges of the DNSmasq process, or abnormal termination of the DNSmasq process, resulting in a denial of service condition.

CVE

References