RULE(RULE ID:105575)

Rule General Information
Release Date: 2021-05-13
Rule Name: DNSmasq sort_rrset Heap OOB Write Vulnerability (CVE-2020-25683)
Severity:
CVE ID:
Rule Protection Details
Description: A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in dnsmasq when DNSSEC is enabled and before it validates the received DNS entries. A remote attacker, who can create valid DNS replies, could use this flaw to cause an overflow in a heap-allocated memory.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference: https://bugzilla.redhat.com/show_bug.cgi
https://www.jsof-tech.com/disclosures/dnspooq/
https://www.debian.org/security/2021/dsa-4844
https://lists.fedoraproject.org/archives/list/package-announce
Solutions
The vendor has released upgrade patches to fix vulnerabilities, please visit:
https://www.jsof-tech.com/disclosures/dnspooq/