dnsmasq Information Disclosure Vulnerability Allowing Source Check Bypass

Vulnerability

A vulnerability in dnsmasq allows remote attackers to bypass source checks by sending a crafted DNS packet that includes RFC 7871 client subnet information. This vulnerability leads to unauthorized information disclosure.

Impact

Exploitation of this vulnerability could result in information disclosure, allowing attackers to access internal memory and network information.

Remediation

Users can upgrade to dnsmasq version 2.92rel2 to address this vulnerability.

Added: May 11, 2026, 6:55 PM
Updated: May 11, 2026, 6:55 PM

Vulnerability Rating

Custom Algorithm
spread
8.1
impact
1.3
exploitability
7.7
remediation
7.7
relevance
7.8
threat
3.2
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.