CVE-2013-0198
EPSS 0.05%Published: 3/5/2013Modified: 4/28/2026
Also known as:DEBIAN-CVE-2013-0198
Description
Dnsmasq before 2.66test2, when used with certain libvirt configurations, replies to queries from prohibited interfaces, which allows remote attackers to cause a denial of service (traffic amplification) via spoofed TCP based DNS queries. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-3411.
Affected packages (1)
- Debian/dnsmasqfrom 0, < 2.66-1