<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T06:12:09.958440+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2021:4153</id>
    <title>ALSA-2021:4153 — Moderate: dnsmasq security and bug fix update</title>
    <updated>2026-10-04T06:12:09.973320+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: dnsmasq, AlmaLinux:8: dnsmasq-utils</p>
<p>The dnsmasq packages contain Dnsmasq, a lightweight DNS (Domain Name Server) forwarder and DHCP (Dynamic Host Configuration Protocol) server.</p>
<p>Security Fix(es):</p>
<p>* dnsmasq: fixed outgoing port used when --server is used with an interface name (CVE-2021-3448)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p>
<p>Additional Changes:</p>
<p>For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2021:4153"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-04028</id>
    <title>bdu:2022-04028</title>
    <updated>2026-10-04T06:12:09.973390+00:00</updated>
    <content>bdu:2022-04028</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-04028"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2021-3448</id>
    <title>Withdrawn: BELL-CVE-2021-3448 — CVE-2021-3448 does not affect BellSoft software</title>
    <updated>2026-10-04T06:12:09.973408+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2021-3448"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-eo77574</id>
    <title>CLEANSTART-2026-EO77574 — Security fix for CVE-2021-3448 applied in: dnsmasq 2.85-r0</title>
    <updated>2026-10-04T06:12:09.973435+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> CleanStart: dnsmasq</p>
<p>Security vulnerability affects the dnsmasq package. This issue is resolved in later releases. See references for vulnerability details.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-eo77574"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-262382</id>
    <title>EUVD-2026-262382</title>
    <updated>2026-10-04T06:12:09.973457+00:00</updated>
    <content>EUVD-2026-262382</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-262382"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-3448</id>
    <title>fkie_cve-2021-3448</title>
    <updated>2026-10-04T06:12:09.973470+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-3448"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-vvf4-c8p4-89v5</id>
    <title>GHSA-vvf4-c8p4-89v5</title>
    <updated>2026-10-04T06:12:09.973492+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-vvf4-c8p4-89v5"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-3448</id>
    <title>gsd-2021-3448</title>
    <updated>2026-10-04T06:12:09.973508+00:00</updated>
    <content>gsd-2021-3448</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-3448"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2021-3448</id>
    <title>msrc_CVE-2021-3448 — A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network inter…</title>
    <updated>2026-10-04T06:12:09.973519+00:00</updated>
    <content>msrc_CVE-2021-3448</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2021-3448"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1189</id>
    <title>OESA-2021-1189 — dnsmasq security update</title>
    <updated>2026-10-04T06:12:09.973538+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: dnsmasq</p>
<p>Dnsmasq provides network infrastructure for small networks: DNS, DHCP, router advertisement and network boot. It is designed to be lightweight and have a small footprint, suitable for resource constrained routers and firewalls. It has also been widely used for tethering on smartphones and portable hotspots, and to support virtual networking in virtualisation frameworks.

Security Fix(es):

A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.(CVE-2021-3448)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1189"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2021:1426-1</id>
    <title>openSUSE-SU-2021:1426-1 — Security update for dnsmasq</title>
    <updated>2026-10-04T06:12:09.973562+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for dnsmasq</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2021:1426-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2021:3530-1</id>
    <title>SUSE-SU-2021:3530-1 — Security update for dnsmasq</title>
    <updated>2026-10-04T06:12:09.973579+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for dnsmasq</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2021:3530-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-3448</id>
    <title>UBUNTU-CVE-2021-3448</title>
    <updated>2026-10-04T06:12:09.973595+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: dnsmasq, Ubuntu:Pro:16.04:LTS: dnsmasq, Ubuntu:18.04:LTS: dnsmasq, Ubuntu:20.04:LTS: dnsmasq</p>
<p>A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This flaw makes a DNS Cache Poisoning attack much easier. The highest threat from this vulnerability is to data integrity.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-3448"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1335</id>
    <title>WID-SEC-W-2022-1335 — Xerox FreeFlow Print Server: Mehrere Schwachstellen</title>
    <updated>2026-10-04T06:12:09.973619+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Xerox FreeFlow Print Server ausnutzen, um die Vertraulichkeit, Verfügbarkeit und Integrität des Systems zu gefährden.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1335"/>
  </entry>
</feed>
