CVE-2026-4892 PUBLISHED

CVE-2026-4892

Assigner: certcc
Reserved: 26.03.2026 Published: 11.05.2026 Updated: 11.05.2026

A heap-based out-of-bounds write vulnerability in the DHCPv6 implementation of dnsmasq allows local attackers to execute arbitrary code with root privileges via a crafted DHCPv6 packet.

Product Status

Vendor dnsmasq
Product dnsmasq
Versions
  • Version 2.92rel2 is affected

References

Problem Types

  • CWE-122: Heap-based Buffer Overflow