[El-errata] ELSA-2024-1335 Important: Oracle Linux 8 dnsmasq security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Fri Mar 15 23:02:07 UTC 2024


Oracle Linux Security Advisory ELSA-2024-1335

http://linux.oracle.com/errata/ELSA-2024-1335.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
dnsmasq-2.79-31.el8_9.2.x86_64.rpm
dnsmasq-utils-2.79-31.el8_9.2.x86_64.rpm

aarch64:
dnsmasq-2.79-31.el8_9.2.aarch64.rpm
dnsmasq-utils-2.79-31.el8_9.2.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates//dnsmasq-2.79-31.el8_9.2.src.rpm

Related CVEs:

CVE-2023-50387
CVE-2023-50868




Description of changes:

[2.79-31.2]
- Fix CVE 2023-50387 and CVE 2023-50868
- Resolves: RHEL-25628
- Resolves: RHEL-25666

[2.79-31.1]
- Do not crash on invalid domain in --synth-domain option (RHEL-22741)

[2.79-31]
- Do not create and search --local and --address=/x/# domains (#2233542)

[2.79-30]
- Make create logfile writeable by root (#2156789)

[2.79-29]
- Fix also dynamically set resolvers over dbus (#2186481)

[2.79-28]
- Correct possible crashes when server=/example.net/# is used (#2186481)

[2.79-27]
- Limit offered EDNS0 size to 1232 (CVE-2023-28450)




More information about the El-errata mailing list