Source: mtr
Version: 0.96-1
Severity: important
Tags: security upstream
X-Debbugs-Cc: [email protected], Debian Security Team <[email protected]>

Hi,

The following vulnerability was published for mtr.

CVE-2026-14461[0]:
| mtr is vulnerable to Out-of-bound read vulnerability in
| ipinfo_lookup() function. An attacker who can influence the TXT
| response used for AS lookups can trigger this bug by returning a DNS
| response that is larger than 512 bytes and uses a crafted
| compression pointer in the answer NAME field. ipinfo_lookup()
| function uses the length of the response as the end-of-message
| boundary for dn_expand() function. The result is a reliable crash.
| This issue exists in the mtr through version 0.96 and it was fixed
| in commit 48e1794414d338ce47abc0f27c25ade8788af9c3.


If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2026-14461
    https://www.cve.org/CVERecord?id=CVE-2026-14461
[1] 
https://github.com/traviscross/mtr/commit/48e1794414d338ce47abc0f27c25ade8788af9c3

Please adjust the affected versions in the BTS as needed.

Regards,
Salvatore

Reply via email to