[ALSA-2026:19158] Important: dnsmasq security update
Type:
security
Severity:
important
Release date:
2026-05-26
Description:
The dnsmasq packages contain Dnsmasq, a lightweight DNS (Domain Name Server) forwarder and DHCP (Dynamic Host Configuration Protocol) server. Security Fix(es): * dnsmasq: dnsmasq: heap buffer overflow in cache via NAME_ESCAPE expansion (CVE-2026-2291) * dnsmasq: NSEC bitmap parsing infinite loop (CVE-2026-4890) * dnsmasq: RRSIG rdlen underflow leading to heap OOB read (CVE-2026-4891) * dnsmasq: DHCPv6 CLID buffer overflow in helper process (CVE-2026-4892) * dnsmasq: Broken ECS source validation bypass (CVE-2026-4893) * dnsmasq: extract_addresses() OOB read via malformed rdlen (CVE-2026-5172) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 dnsmasq-utils-2.90-7.el10_2.aarch64.rpm 084dc08f58584e1aa8fb7bf0314bac6ea6d2875b2e4d5ea0ef92ae6467a3e954
aarch64 dnsmasq-2.90-7.el10_2.aarch64.rpm db23d841b2c5eb195d7684db3a8eb3377cd41e84c009db9e0262bec419614afe
ppc64le dnsmasq-utils-2.90-7.el10_2.ppc64le.rpm 954683c8e6289166abaeaa6bfff0f1a4049272c870432e8a1525d92c7cb56692
ppc64le dnsmasq-2.90-7.el10_2.ppc64le.rpm f3856a206f2837c62009833e84868497ba83197b59bd51b7430142299e3c7e6d
s390x dnsmasq-2.90-7.el10_2.s390x.rpm 15a332757188f31e4aadfb55e33410c7ef2c50ac9c822325b534ac6479d0a5d2
s390x dnsmasq-utils-2.90-7.el10_2.s390x.rpm c40e80f425a0b4cec1019c5afc1b24c10d0cacc8d4c8821f56b62e8130e56112
x86_64 dnsmasq-utils-2.90-7.el10_2.x86_64.rpm 733dbe00db109745abce1fa55f5389f4a59b10c0ba6770b4c75423926f274ed2
x86_64 dnsmasq-2.90-7.el10_2.x86_64.rpm 9dbfedf67bf7ffe5f3ddbfceac450734e61bcfccbeef8bb5d6b11272275f8d31
x86_64_v2 dnsmasq-utils-2.90-7.el10_2.x86_64_v2.rpm 7ea1c08a8a2899546d9f7cfd932a93daaefc402f608973a58c4aaef733f0a656
x86_64_v2 dnsmasq-2.90-7.el10_2.x86_64_v2.rpm 956813393855e1b4e6dec4c9918a27556c20743ced8c07d5b3ca57d1082dfe5b
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.