Linuxsecurity Critical Dnsmasq Vulnerability Exposes Ubuntu Systems to Remote Attacks
Article Content
- •Dnsmasq vulnerability allows remote code execution and denial of service.
- •Affected systems include Ubuntu 26.04 LTS and its derivatives.
- •Users should update to dnsmasq version 2.92-1ubuntu0.3 to mitigate the risk.
A critical vulnerability in Dnsmasq affects Ubuntu 26.04 LTS and its derivatives, allowing remote attackers to crash the service or execute arbitrary code. The flaw arises from improper handling of BOOTREPLY packets when the --dhcp-split-relay option is enabled. This vulnerability can lead to denial of service and potential remote code execution. Users are advised to update their systems to the patched version dnsmasq 2.92-1ubuntu0.3. A standard system update will apply the necessary changes. The issue was disclosed on May 26, 2026, and impacts all systems running the affected versions of Dnsmasq. Ubuntu Pro offers extended security coverage for users managing multiple systems.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Following this threat?
Track Ubuntu in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical GitLab Vulnerabilities Exploited Soon After Patch Release On September 10, 2026, GitLab released versions 19.3.2, 19.2.6, and 19.1.8 to address critical vulnerabilities, including CVE-2026-85706, a path traversal flaw with a CVSS score of 10.0, allowing unauthenticated users to read arbitrary files from the server. Within hours of the patch, active exploitation attempts were…