CVE-2026-4893 PUBLISHED

CVE-2026-4893

Assigner: certcc
Reserved: 26.03.2026 Published: 11.05.2026 Updated: 11.05.2026

An information disclosure vulnerability in dnsmasq allows remote attackers to bypass source checks via a crafted DNS packet with RFC 7871 client subnet information.

Product Status

Vendor dnsmasq
Product dnsmasq
Versions
  • Version 2.92rel2 is affected

References

Problem Types

  • CWE-287: Improper Authentication