dnsmasq Flaws Span DNS Poisoning and Local Root

dnsmasq is not just a crash-prone service here. The same package can sit in front of DNS trust and DHCPv6 on small networks and embedded hosts, so one advisory now covers both remote cache poisoning and, in some setups, local privilege escalation. The release fixes six flaws in dnsmasq 2.92rel2. The set includes heap overflows, heap corruption, out-of-bounds reads and writes, an infinite loop, and input-validation failures that can enable DNS cache poisoning, information disclosure, denial of service, source-check bypass, and possible local root through DHCPv6. That mix matters because a compromised dnsmasq instance can do more than crash a resolver. It can rewrite answers users and devices trust, and on systems that expose DHCPv6 handling it can also become a foothold for host compromise.

Part of the PlainSec briefing for 2026-05-13

Sources