Fedora has issued an advisory today (January 30): https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/UQBQNMDMDJKU5GDXPKGPK5EWI5VQWYC6/ Mageia 5 and Mageia 6 would also be affected if Cauldron is. Not affected are builds without DNSSEC support. I don't know whether ours is.
Whiteboard: (none) => MGA6TOO
Hello, mga5 & 6 aren't built with dnssec support so they should not be affected. I just submitted dnsmasq 2.78-3 with the patches to fix this CVE (and correct the packaging to really allow dnssec to work). regards Julien
Thanks Julien!
Resolution: (none) => FIXEDStatus: NEW => RESOLVEDWhiteboard: MGA6TOO => (none)