Known Vulnerabilities for Dnsmasq by Thekelleys

Listed below are 10 of the newest known vulnerabilities associated with "Dnsmasq" by "Thekelleys".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-3448 A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, ... 4 - MEDIUM 2021-04-08 2023-11-07
CVE-2020-25687 A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in dnsmasq when DNSSEC is enable... 5.9 - MEDIUM 2021-01-20 2023-11-07
CVE-2020-25686 A flaw was found in dnsmasq before version 2.83. When receiving a query, dnsmasq does not check for an existing pending reque... 3.7 - LOW 2021-01-20 2023-11-07
CVE-2020-25685 A flaw was found in dnsmasq before version 2.83. When getting a reply from a forwarded query, dnsmasq checks in forward.c:rep... 3.7 - LOW 2021-01-20 2023-11-07
CVE-2020-25684 A flaw was found in dnsmasq before version 2.83. When getting a reply from a forwarded query, dnsmasq checks in the forward.c... 3.7 - LOW 2021-01-20 2023-11-07
CVE-2020-25683 A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in dnsmasq when DNSSEC is enable... 5.9 - MEDIUM 2021-01-20 2023-11-07
CVE-2020-25682 A flaw was found in dnsmasq before 2.83. A buffer overflow vulnerability was discovered in the way dnsmasq extract names from... 8.1 - HIGH 2021-01-20 2023-11-07
CVE-2020-25681 A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in the way RRSets are sorted bef... 8.1 - HIGH 2021-01-20 2023-11-07
CVE-2019-14834 A vulnerability was found in dnsmasq before version 2.81, where the memory leak allows remote attackers to cause a denial of ... 3.7 - LOW 2020-01-07 2023-02-12
CVE-2019-14513 Improper bounds checking in Dnsmasq before 2.76 allows an attacker controlled DNS server to send large DNS packets that resul... 7.5 - HIGH 2019-08-01 2023-03-03

Known Affected Configurations (CPE V2.3)

Type Vendor Product Version Update Edition Language
ApplicationThekelleysDnsmasq2.9AllAllAll
ApplicationThekelleysDnsmasq2.83AllAllAll
ApplicationThekelleysDnsmasq2.82AllAllAll
ApplicationThekelleysDnsmasq2.81AllAllAll
ApplicationThekelleysDnsmasq2.80AllAllAll
ApplicationThekelleysDnsmasq2.8AllAllAll
ApplicationThekelleysDnsmasq2.79AllAllAll
ApplicationThekelleysDnsmasq2.78AllAllAll
ApplicationThekelleysDnsmasq2.77AllAllAll
ApplicationThekelleysDnsmasq2.76AllAllAll
ApplicationThekelleysDnsmasq2.75AllAllAll
ApplicationThekelleysDnsmasq2.74AllAllAll
ApplicationThekelleysDnsmasq2.73AllAllAll
ApplicationThekelleysDnsmasq2.72AllAllAll
ApplicationThekelleysDnsmasq2.71AllAllAll
ApplicationThekelleysDnsmasq2.70AllAllAll
ApplicationThekelleysDnsmasq2.7AllAllAll
ApplicationThekelleysDnsmasq2.69AllAllAll
ApplicationThekelleysDnsmasq2.68AllAllAll
ApplicationThekelleysDnsmasq2.67AllAllAll
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report