<feed xmlns='http://www.w3.org/2005/Atom'>
<title>linux/meta-openembedded.git/meta-networking/recipes-support/dnsmasq/files/CVE-2026-4891.patch, branch master</title>
<subtitle>Mirror of git.openembedded.org/meta-openembedded</subtitle>
<id>https://git.enea.com/cgit/linux/meta-openembedded.git/atom?h=master</id>
<link rel='self' href='https://git.enea.com/cgit/linux/meta-openembedded.git/atom?h=master'/>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/'/>
<updated>2026-06-08T01:21:50+00:00</updated>
<entry>
<title>dnsmasq: upgrade 2.92 -&gt; 2.93</title>
<updated>2026-06-08T01:21:50+00:00</updated>
<author>
<name>Abhishek Bachiphale</name>
<email>Abhishek.Bachiphale@windriver.com</email>
</author>
<published>2026-06-04T20:52:57+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=44ec3710d58879a7e9e5f2de97cd81c3211b522c'/>
<id>urn:sha1:44ec3710d58879a7e9e5f2de97cd81c3211b522c</id>
<content type='text'>
ChangeLog:
https://dnsmasq.org/CHANGELOG

- Update checksum
- Remove obsolete patches
- Verified build and runtime functionality

Security fixes (included upstream in 2.93) :
- CVE-2026-2291
- CVE-2026-4890
- CVE-2026-4891
- CVE-2026-4892
- CVE-2026-4893
- CVE-2026-5172

- Removed patches corresponding to the above CVEs
  as fixes are now part of upstream release

Signed-off-by: Abhishek Bachiphale &lt;Abhishek.Bachiphale@windriver.com&gt;
Signed-off-by: Khem Raj &lt;khem.raj@oss.qualcomm.com&gt;
</content>
</entry>
<entry>
<title>dnsmasq: fix CVE-2026-4891</title>
<updated>2026-05-21T04:18:31+00:00</updated>
<author>
<name>Abhishek Bachiphale</name>
<email>Abhishek.Bachiphale@windriver.com</email>
</author>
<published>2026-05-18T17:13:33+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=a9de48a9fa55a254c0bf2eb528c81bd90e015c03'/>
<id>urn:sha1:a9de48a9fa55a254c0bf2eb528c81bd90e015c03</id>
<content type='text'>
A heap-based out-of-bounds read vulnerability in the
DNSSEC validation of dnsmasq allows remote attackers
to cause a denial of service via a crafted DNS packet.

Reference:
[ https://nvd.nist.gov/vuln/detail/CVE-2026-4891 ]

Signed-off-by: Abhishek Bachiphale &lt;Abhishek.Bachiphale@windriver.com&gt;
Signed-off-by: Khem Raj &lt;khem.raj@oss.qualcomm.com&gt;
</content>
</entry>
</feed>
