gpp_maybe Security update for dnsmasq
SUSE-SLE-Module-Basesystem-15-SP7-2026-3028


This update for dnsmasq fixes the following issues - CVE-2026-12725: heap buffer overflow in `log_query()` when logging unsupported DS/DNSKEY replies (bsc#1268764). - CVE-2026-12969: out-of-bounds read in `find_soa()` due to missing extrabytes validation (bsc#1268882). Changes for dnsmasq: - Update to 2.93: * Fix a corner-case in DNSSEC validation with wildcards. * Fix DNSSEC failure with spurious RRSIGs. * Fix DNSSEC fail with CNAME replies to DS queries. * Fix regression in 2.92 release which broke DHCPv6 when a DHCP relay is in use. * Modify the inotify implementation so that inotify watches are only created after dnsmasq has changed permissions and userid.


cloud_download Downloads

Basesystem Module 15.7 aarch64
  • Packages
    dnsmasq
    DNS Forwarder and DHCP Server
    2.93-150400.16.17.1 lock rpm lock src
Basesystem Module 15.7 ppc64le
  • Packages
    dnsmasq
    DNS Forwarder and DHCP Server
    2.93-150400.16.17.1 lock rpm lock src
Basesystem Module 15.7 x86_64
  • Packages
    dnsmasq
    DNS Forwarder and DHCP Server
    2.93-150400.16.17.1 lock rpm lock src
Basesystem Module 15.7 s390x
  • Packages
    dnsmasq
    DNS Forwarder and DHCP Server
    2.93-150400.16.17.1 lock rpm lock src