[CLSA-2026:1788390417] dnsmasq: Fix of 2 CVEs
Type:
security
Severity:
None
Release date:
2026-09-02 23:07:05 UTC
Description:
- CVE-2023-50387, CVE-2023-50868: fix three adaptation defects in the vendor 2.90-onto-2.79 backport: uninitialized plen bounding extract_name() in the resource-limit log, rr_status left as char * while storing RRSIG TTL ceilings, and check_unsigned negated on the TCP path only
Updated packages:
  • dnsmasq-2.79-33.el8.tuxcare.els2.x86_64.rpm
    sha:c256402219c1e7f973fd2616f5d6620965166be54b7dbf00e6bdc216fb4bf01b
  • dnsmasq-utils-2.79-33.el8.tuxcare.els2.x86_64.rpm
    sha:5e4591d6663c3327fd65d6c24d5383e48e124b63d62f93ca66f7a2ea2dd16fda
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.