[ALSA-2024:1335] Important: dnsmasq security update
Type:
security
Severity:
important
Release date:
2024-03-18
Description:
The dnsmasq packages contain Dnsmasq, a lightweight DNS (Domain Name Server) forwarder and DHCP (Dynamic Host Configuration Protocol) server. Security Fix(es): * dnsmasq: bind9: KeyTrap - Extreme CPU consumption in DNSSEC validator (CVE-2023-50387) * dnsmasq: bind9: Preparing an NSEC3 closest encloser proof can exhaust CPU resources (CVE-2023-50868) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 dnsmasq-utils-2.79-31.el8_9.2.aarch64.rpm 661ea7781e7a69c222f8ab61882ab9fcec29c45b58f9eb1bb7f17a2b5bab03bf
aarch64 dnsmasq-2.79-31.el8_9.2.aarch64.rpm c8d073ef61c3aa182fa0bc62c12465255a708bfc91288ff277d0f0468d73a935
ppc64le dnsmasq-utils-2.79-31.el8_9.2.ppc64le.rpm 52a94a55b7de20848ff4d91b3576cfabc4ba3109eb24609db3c98c03c01eda90
ppc64le dnsmasq-2.79-31.el8_9.2.ppc64le.rpm 9b34bfc7fa8fe2d8a6c63b3bb6093603666674db115e559a96a6ebcba2d91a16
s390x dnsmasq-2.79-31.el8_9.2.s390x.rpm 7698d8d8a961b8443224afa62865a72c8948d6b8445d81654a17e1daa65c2ca0
s390x dnsmasq-utils-2.79-31.el8_9.2.s390x.rpm f853b7a1a7f82f46c0848f7385bdba0bbba77327a5d948e4e86155b8e6adf4e3
x86_64 dnsmasq-2.79-31.el8_9.2.x86_64.rpm 5b88d8e2f8a91d685640329557dadbfdd38be5d311181e2e39c8a5c3f6440891
x86_64 dnsmasq-utils-2.79-31.el8_9.2.x86_64.rpm 9f5d10e888ae3e13468f343b1ab917250cc4dcc5243e0c50d3489307ccf0b60c
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.