gpp_maybe
Security update for dnsmasq
SUSE-SLE-Module-Basesystem-15-SP7-2026-3028
This update for dnsmasq fixes the following issues - CVE-2026-12725: heap buffer overflow in `log_query()` when logging unsupported DS/DNSKEY replies (bsc#1268764). - CVE-2026-12969: out-of-bounds read in `find_soa()` due to missing extrabytes validation (bsc#1268882). Changes for dnsmasq: - Update to 2.93: * Fix a corner-case in DNSSEC validation with wildcards. * Fix DNSSEC failure with spurious RRSIGs. * Fix DNSSEC fail with CNAME replies to DS queries. * Fix regression in 2.92 release which broke DHCPv6 when a DHCP relay is in use. * Modify the inotify implementation so that inotify watches are only created after dnsmasq has changed permissions and userid.
-
Release DateJul 15 2026
-
References
-
Typesecurity
-
Severityimportant
cloud_download Downloads
Basesystem Module 15.7 aarch64
-
Packages
Basesystem Module 15.7 ppc64le
-
Packages
Basesystem Module 15.7 x86_64
-
Packages
Basesystem Module 15.7 s390x
-
Packages