A vulnerability was found in the implementation of DNSSEC in Dnsmasq up to and including 2.78. Wildcard synthesized NSEC records could be improperly interpreted to prove the non-existence of hostnames that actually exist.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Dnsmasq | Thekelleys | * | 2.78 (including) |
Dnsmasq | Ubuntu | artful | * |
Dnsmasq | Ubuntu | upstream | * |
Dnsmasq | Ubuntu | xenial | * |