RULE(RULE ID:805360)

Rule General Information
Release Date: 2017-10-06
Rule Name: Dnsmasq IPv6 Information Leak Vulnerability (CVE-2017-14494)
Severity:
CVE ID:
Rule Protection Details
Description: dnsmasq before 2.78, when configured as a relay, allows remote attackers to obtain sensitive memory information via vectors involving handling DHCPv6 forwarded requests.
Impact: An attacker can abtain sensitive information of the target victim, and do malicious actions to gain profits using the information.
Affected OS: Other Unix, FreeBSD, Linux
Reference: CVE-2017-14994
ExploitDB:42944
Solutions
The vendor has issued a fix (2.78). The vendor advisory is available at http://www.thekelleys.org.uk/dnsmasq/CHANGELOG