Page 1 of 1

OpenVAS Vulnerability Scan

Posted: Mon Jan 26, 2015 10:18 pm
by wifiuk
Is there a fix for this ?




Name: Dnsmasq Remote Denial of Service Vulnerability
Config:
Family: Denial of Service
OID: 1.3.6.1.4.1.25623.1.0.103509
Version: $Revision: 12 $
Notes: 0
Overrides: 0
Summary

Dnsmasq is prone to a denial-of-service vulnerability.

An attacker can exploit this issue to cause denial-of-service conditions through a stream of spoofed DNS queries producing large results.

Dnsmasq versions 2.62 and prior are vulnerable.
Vulnerability Scoring
CVSS base:
9.3
CVSS base vector: AV:N/AC:M/Au:N/C:C/I:C/A:C
References
BID: 54353
Other: http://www.securityfocus.com/bid/54353
http://www.thekelleys.org.uk/dnsmasq/doc.html
https://bugzilla.redhat.com/show_bug.cgi?id=833033

Re: OpenVAS Vulnerability Scan

Posted: Tue Mar 10, 2015 4:07 pm
by wifiuk
nothing?

Re: OpenVAS Vulnerability Scan

Posted: Tue Mar 10, 2015 4:31 pm
by billion_fan
wifiuk wrote:nothing?
Still checking, (just chased our engineers again)