CVE detail
CVE-2026-5172
A buffer overflow in dnsmasq’s extract_addresses() function allows an attacker to trigger a heap out-of-bounds read and crash by exploiting a malformed DNS response, enabling extract_name() to advance the pointer past the record’s end.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 25.6 · diversity 20.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
12 source links · newest first
- CVE-2026-5172 CVE-2026-5172Microsoft MSRC
Information published.
vendormsrc.microsoft.comMay 15, 2026, 8:01 AM Recent disclosures have revealed that open-source networking tool dnsmasq is grappling with a serious set of vulnerabilities. The problems span memory safety and input validation, with researchers identifying heap buffer overflows, heap corruption, and code execution bugs among the issues. Taken together, the security flaws open the door to various attacks: poisoning cached DNS entries, slipping past security controls, crashing the dnsmasq process, and in certain scenarios, escalating privileges locally. To address all of this, … More →
newswww.helpnetsecurity.comMay 12, 2026, 10:57 AM- https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-5172.jsonsecurity.access.redhat.com
No excerpt available.
Vendor Advisorysecurity.access.redhat.comMay 11, 2026, 6:16 PM - https://bugzilla.redhat.com/show_bug.cgi?id=2458521bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comMay 11, 2026, 6:16 PM - https://access.redhat.com/security/cve/CVE-2026-5172access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 11, 2026, 6:16 PM - https://access.redhat.com/errata/RHSA-2026:19158access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 11, 2026, 6:16 PM - https://www.kb.cert.org/vuls/id/471747www.kb.cert.org
No excerpt available.
Patchwww.kb.cert.orgMay 11, 2026, 6:16 PM - https://thekelleys.org.uk/dnsmasq/CVE/thekelleys.org.uk
No excerpt available.
referencethekelleys.org.ukMay 11, 2026, 6:16 PM - https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2026q2/018471.htmllists.thekelleys.org.uk
No excerpt available.
referencelists.thekelleys.org.ukMay 11, 2026, 6:16 PM No excerpt available.
Exploitgithub.comMay 11, 2026, 6:16 PMNo excerpt available.
Exploitgithub.comMay 11, 2026, 6:16 PMNo excerpt available.
Exploitgithub.comMay 11, 2026, 6:16 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-66337CVSS 6.5 · Medium
A flaw was found in libsoup. An unsigned integer underflow in the soup_filter_input_stream_read_until() function causes a heap buffer over-read when parsing multipart HTTP respons…
- CVE-2026-66034CVSS 7.7 · High
libssh2 through 1.11.1, fixed in commit a13bb6c, contains a missing bounds check vulnerability that allows a malicious SSH server to trigger an arbitrary-length heap out-of-bounds…
- CVE-2026-66033CVSS 8.7 · High
libssh2 through 1.11.1, fixed in commit a2ed82d, contains a pre-authentication integer underflow vulnerability in the ssh2_cipher_crypt() function in src/openssl.c that allows a m…
- CVE-2026-55732CVSS 8.7 · High
Out-of-bounds Read (CWE-125) in BACnet packet parsing (`bacdt_datetime_to_tod`) in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.18 on LINX-A…
- CVE-2026-56391CVSS 4.6 · Medium
GNU coreutils uniq is vulnerable to an out‑of‑bounds read due to incorrect handling of multibyte input when the -w (--check-chars) option is used. The find_field() function miscal…
- CVE-2026-16002CVSS 8.8 · High
The affected product is vulnerable to an Out-of-bounds read, which may allow an attacker to crash the parsing process and cause a denial of service.