Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:1335 - Security Advisory
Issued:
2024-03-14
Updated:
2024-03-14

RHSA-2024:1335 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: dnsmasq security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for dnsmasq is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The dnsmasq packages contain Dnsmasq, a lightweight DNS (Domain Name Server) forwarder and DHCP (Dynamic Host Configuration Protocol) server.

Security Fix(es):

  • dnsmasq: bind9: KeyTrap - Extreme CPU consumption in DNSSEC validator (CVE-2023-50387)
  • dnsmasq: bind9: Preparing an NSEC3 closest encloser proof can exhaust CPU resources (CVE-2023-50868)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 8 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 8 s390x
  • Red Hat Enterprise Linux for Power, little endian 8 ppc64le
  • Red Hat Enterprise Linux for ARM 64 8 aarch64

Fixes

  • BZ - 2263914 - CVE-2023-50387 bind9: KeyTrap - Extreme CPU consumption in DNSSEC validator
  • BZ - 2263917 - CVE-2023-50868 bind9: Preparing an NSEC3 closest encloser proof can exhaust CPU resources

CVEs

  • CVE-2023-50387
  • CVE-2023-50868

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 8

SRPM
dnsmasq-2.79-31.el8_9.2.src.rpm SHA-256: 083a99ad1d332be4c6455dac77af0b1902e4038db8b31b63061914ec448ce49b
x86_64
dnsmasq-2.79-31.el8_9.2.x86_64.rpm SHA-256: 7e4ca1ea488e4210d63386316974361f881819de558d56f8049faf11a4f0784a
dnsmasq-debuginfo-2.79-31.el8_9.2.x86_64.rpm SHA-256: 06f700749b4c708f3717dfa1de03268aa29340674cae77fd8d5d85e4cd40334c
dnsmasq-debugsource-2.79-31.el8_9.2.x86_64.rpm SHA-256: a1f4328fd2565f19d7c6c55afd685d4c9afc6a8d633fe9cdefd654649789ab93
dnsmasq-utils-2.79-31.el8_9.2.x86_64.rpm SHA-256: fb0b6d80d1466828921376d6bb64bde354ad7e2959f101a1ce403cdd75e8e3e4
dnsmasq-utils-debuginfo-2.79-31.el8_9.2.x86_64.rpm SHA-256: ab85f51cbfe80f0536a9362bfb9ccedf7935bd623f8bd0fb23dafe0ef0e6aa72

Red Hat Enterprise Linux for IBM z Systems 8

SRPM
dnsmasq-2.79-31.el8_9.2.src.rpm SHA-256: 083a99ad1d332be4c6455dac77af0b1902e4038db8b31b63061914ec448ce49b
s390x
dnsmasq-2.79-31.el8_9.2.s390x.rpm SHA-256: 6380712e7f1894be83ee98d82fd3723f5f7a24ed1d58042dd62270d67e7fe0b9
dnsmasq-debuginfo-2.79-31.el8_9.2.s390x.rpm SHA-256: 1e2fc8bee96c333895c6b18baf735d989a0a13c3deb5d781df55568bea259db7
dnsmasq-debugsource-2.79-31.el8_9.2.s390x.rpm SHA-256: 1f06a3368c26fe72084fe8a43859b2399f9effe6dc068d38349faed388548e47
dnsmasq-utils-2.79-31.el8_9.2.s390x.rpm SHA-256: ce1d6f257dc2ea6db1dd881bf1b13fd5467359502c72fd900261fac113b910c5
dnsmasq-utils-debuginfo-2.79-31.el8_9.2.s390x.rpm SHA-256: 30b1ce673eb8086f331b26bd4715c17cdb46dd5727bae2cafc9fab61a7d52083

Red Hat Enterprise Linux for Power, little endian 8

SRPM
dnsmasq-2.79-31.el8_9.2.src.rpm SHA-256: 083a99ad1d332be4c6455dac77af0b1902e4038db8b31b63061914ec448ce49b
ppc64le
dnsmasq-2.79-31.el8_9.2.ppc64le.rpm SHA-256: 32c2e51f0734cf61f7f6dd896cd0d526b7e68e70c9c9a1af0b188fc13df30b5f
dnsmasq-debuginfo-2.79-31.el8_9.2.ppc64le.rpm SHA-256: 7667a68083b4bc26106ad3a9e7423117e178ef8285062997dcd79a7729eb0701
dnsmasq-debugsource-2.79-31.el8_9.2.ppc64le.rpm SHA-256: 325c30ebf0060ef210c1e8b8d418200a189aaf7ee6bc7d9cb396af6dda70a0e9
dnsmasq-utils-2.79-31.el8_9.2.ppc64le.rpm SHA-256: 6425712c17f1354224516d3797a13a3776f0d89f38b0745361c2ce75a36892cb
dnsmasq-utils-debuginfo-2.79-31.el8_9.2.ppc64le.rpm SHA-256: 3dec0af29b8dcbfa75b099c5b596bc817bf58dc3536252b8bd1572482046fd41

Red Hat Enterprise Linux for ARM 64 8

SRPM
dnsmasq-2.79-31.el8_9.2.src.rpm SHA-256: 083a99ad1d332be4c6455dac77af0b1902e4038db8b31b63061914ec448ce49b
aarch64
dnsmasq-2.79-31.el8_9.2.aarch64.rpm SHA-256: 7a3cfb69be46adaaca30b54c8f42ed5425dce4958f8ad2f4d31888426b112c91
dnsmasq-debuginfo-2.79-31.el8_9.2.aarch64.rpm SHA-256: 00f1cadfc5dfa2da7977be921055117ece2d110d8b580877d03ce9ea6792abcb
dnsmasq-debugsource-2.79-31.el8_9.2.aarch64.rpm SHA-256: 7d7e029f90276de4f1b3c4256299c9cf3d49ff83f5e1e35c4534047a2c4e127d
dnsmasq-utils-2.79-31.el8_9.2.aarch64.rpm SHA-256: 457320a63612614660d443a336ba7bf9ab5cbf712477d3a65951a58e7e069fac
dnsmasq-utils-debuginfo-2.79-31.el8_9.2.aarch64.rpm SHA-256: cec204d774bb697afbc2e75138b289572557e13e1e934bc6a33724ff931dabf6

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat, Inc.

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility