Google found 7 security bugs on the famous network software Dnsmasq
Security researchers have found seven security holes on the Dnsmasq network service software, three of which allow remote code execution and hijack computers.
Dnsmasq is a small network tool used by many users, providing a DNS Forwarder, DHCP server (Dynamic Host Configuration Protocol), Route Ads and a network restart service for Small network.
Dnsmasq is preinstalled on many devices and OS, including Linux kernels like Ubuntu and Debian, routers, mobile phones, and IoT devices. Shodan testing with Dnsmasq shows that about 1.1 million devices in the world are installing Dnsmasq.
Currently, Google's research team has discovered seven security flaws, including DNS-related errors for remote code execution, information leakage and service rejection errors via DNS or DHCP.
Security vulnerability on Dnsmasq network service software
In 7 errors, 3 errors can execute remote code, 3 errors to deny service and 1 error can steal information.
All errors have been patched in Dnsmasq 2.78, users should update as quickly as possible. Because the vulnerability has been fixed, Google researchers detailed the PoC code for each vulnerability.
Google has updated the affected services and released security updates for Android partners during the October security update. Other affected Google services have also been updated.
You should read it
- Detecting vulnerabilities in BitTorrent applications allows hackers to control user computers
- ProFTPD remote code execution vulnerability affects more than 1 million servers worldwide
- Dell computers became victims of RCE attacks by vulnerabilities in SupportAssist
- Samba vulnerabilities allow hackers to invade thousands of remote Linux computers
- IBM developed a new technology to patch security holes
- The world is at risk of virtual war
- Many serious vulnerabilities have been discovered that allow attackers to take full control of the 4G router
- The basic steps in dealing with network security issues that you need to understand
May be interested
- Hey phone manufacturer, give us back the headphone jack!it has been a year since apple officially removed the 3.5mm headphone jack from iphone 7 and called it 'a brave'.
- 8 super hidden features on the phone or you may not knowif you are a tech fan, please pocket 8 hidden features on the phone or you may not know below to make your life easier and more convenient!
- Mozilla stopped supporting Firefox for Windows XP and Vista in June 2018today, mozilla announced it would not offer any support for the firefox browser on windows xp and vista in june 2018.
- Google announced the new Pixel 2 phonegoogle announced the new pixel 2 xl phone on october 4 at the san francisco event.
- Adobe announced Photoshop Elements 2018 and Premiere Elements 2018 with many exciting new featurestoday, adobe announced it will release photoshop elements 2018 with many new improvements and features.
- Facebook launches Workplace Chat application that supports screen sharing for Windowsit seems that facebook is becoming more serious with workplace - its corporate collaboration platform. workplace application allows people to create personal facebook accounts and use facebook tools to interact with their peers. workplace owns all the features like news feed, group, chat and online video. now, facebook is testing this application for windows users.