CVE 2017-13704
'In dnsmasq before 2.78, if the DNS packet size does not match the expected size, the size parameter in a memset call gets a negative value. As it is an unsigned value, memset ends up writing up to 0xffffffff zero's (0xffffffffffffffff in 64 bit platforms), making dnsmasq crash.'
ClearCenter response
Short response
This issue was never introduced as code in any version of ClearOS.
Long response
This issue was created in version 77 of DNSMasq and was never incorporated into packages for ClearOS 6 or ClearOS 7.
Resolution
No action required.
Links
content/en_us/announcements_cve_cve-2017-13704.txt · Last modified: 2018/01/05 13:45 by dloper