Security Advisory

CVE-2026-2291

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-05-11 16:47:01
Last updated 2026-07-20 20:30:02
Assigner certcc
CVSS score not scored
State PUBLISHED

Description

dnsmasqs extract_name() function can be abused to cause a heap buffer overflow, allowing an attacker to inject false DNS cache entries, which could result in DNS lookups to redirect to an attacker-controlled IP address, or to cause a DoS.