In dnsmasq before 2.78, if the DNS packet size does not match the expected size, the size parameter in a memset call gets a negative value. As it is an unsigned value, memset ends up writing up to 0xffffffff zero's (0xffffffffffffffff in 64 bit platforms), making dnsmasq crash.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2017-10-02T21:00:00
Updated: 2018-05-10T09:57:01
Reserved: 2017-08-25T00:00:00
Link: CVE-2017-13704
JSON object: View
NVD Information
Status : Modified
Published: 2017-10-03T01:29:01.637
Modified: 2023-11-07T02:38:41.510
Link: CVE-2017-13704
JSON object: View
Redhat Information
No data.
CWE