Re: [LEDE-DEV] Severe dnsmasq vulnerabilities affecting LEDE

2017-10-03 Thread Daniel Engberg
In addition to Jo-Philipp Wich's announcement the buildbots in LEDE's infrastructure are backlogged meaning that the following targets (including notable mentions) does not have an updated package for dnsmasq as time of writing: arc_arc700 arm_arm926ej-s arm_cortex-a5 arm_cortex-a53_neon-vfpv4

[LEDE-DEV] Severe dnsmasq vulnerabilities affecting LEDE

2017-10-03 Thread Jo-Philipp Wich
The Google security team identified a number of critical security issues present in dnsmasq, the embedded DNS and DHCP server used by LEDE as well as many other different open and proprietary firmwares and network appliances. A total of six different flaws affecting both DNS and DHCP functionality