PT-2018-19286 · Dnsmasq · Dnsmasq

Published

2018-11-03

·

Updated

2018-11-03

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions dnsmasq (affected versions not specified)
Description The issue arises when dnsmasq runs as the nobody user, which could lead to security problems if multiple services share the same user. This is because running multiple services under the same user can increase the attack surface if any of those services are compromised.
Recommendations For all affected versions, update the dnsmasq packages to make dnsmasq run as its own user, dnsmasq, to mitigate the security issue.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

MGASA-2018-0427

Affected Products

Dnsmasq