CVE 2017-13704

'In dnsmasq before 2.78, if the DNS packet size does not match the expected size, the size parameter in a memset call gets a negative value. As it is an unsigned value, memset ends up writing up to 0xffffffff zero's (0xffffffffffffffff in 64 bit platforms), making dnsmasq crash.'

ClearCenter response

Short response

This issue was never introduced as code in any version of ClearOS.

Long response

This issue was created in version 77 of DNSMasq and was never incorporated into packages for ClearOS 6 or ClearOS 7.


No action required.

