ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ื– ืื™ืŸ dnsmasq ืขืจืœื•ื™ื‘ืŸ DNS ืงืึทืฉ ืคืึทืจืกืึทืžื•ื ื’ ืื•ืŸ ื•ื•ืึธืจืฆืœ ืงืึธื“ ืขืงืกืขืงื•ื˜ื™ืึธืŸ

ื–ืขืงืก ืฉื•ื•ืื›ืงื™ื™ื˜ืŸ ื–ืขื ืขืŸ ืื™ื“ืขื ื˜ื™ืคื™ืฆื™ืจื˜ ื’ืขื•ื•ืึธืจืŸ ืื™ืŸ ื“ืขื Dnsmasq ืคึผืขืงืœ, ื•ื•ืึธืก ืงืึธืžื‘ื™ื ื™ืจื˜ ืึท ืงืขืฉื™ื ื’ DNS ืจืขื–ืึธืœื•ื•ื•ืขืจ, ืึท DHCP ืกืขืจื•ื•ืขืจ, ืึทืŸ IPv6 ืจื•ื˜ ืึทื ืึทื•ื ืกืžืขื ื˜ ืกืขืจื•ื•ื™ืก, ืื•ืŸ ืึท ื ืขื˜ื•ื•ืึธืจืง ื‘ื•ื˜ ืกื™ืกื˜ืขื. ื“ื™ ืฉื•ื•ืื›ืงื™ื™ื˜ืŸ ืขืจืœื•ื™ื‘ืŸ ืจื•ื˜ ืงืึธื“ ืขืงืกืขืงื•ื˜ื™ืึธืŸ, ื“ืึธืžืขื™ืŸ ืจื™ื“ืขืจืขืงืฉืึทืŸ, ืคึผืจืึธืฆืขืก ื–ื›ึผืจื•ืŸ ื•ืคื“ืขืงื•ื ื’, ืื•ืŸ ืกืขืจื•ื•ื™ืก ืงืจืึทืฉื™ื–. ื“ื™ ืคึผืจืึธื‘ืœืขืžืขืŸ ื–ืขื ืขืŸ ืคืึทืจืจื™ื›ื˜ ืื™ืŸ dnsmasq 2.92rel2. ืคืึทืจืจื™ื›ื˜ื•ื ื’ืขืŸ ื–ืขื ืขืŸ ืื•ื™ืš ื‘ื ื™ืžืฆื ื•ื•ื™ ืคึผืึทื˜ืฉืึทื–.

ื™ื™ื“ืขื ืึทืคื™ื™ื“ ื™ืฉื•ื–:

  • CVE-2026-4892 ืื™ื– ื ื‘ืึทืคืขืจ ืึธื•ื•ื•ืขืจืคืœืึธื• ืื™ืŸ ื“ืขืจ DHCPv6 ืื™ืžืคึผืœืขืžืขื ื˜ืึทืฆื™ืข ื•ื•ืึธืก ืขืจืœื•ื™ื‘ื˜ ืึทืŸ ืึทื˜ืึทืงื™ืจืขืจ ืžื™ื˜ ืœืึธืงืึทืœืŸ ื ืขืฅ ืึทืงืกืขืก ืฆื• ื“ื•ืจื›ืคื™ืจืŸ ืงืึธื“ ืžื™ื˜ ืจื•ื˜ ืคึผืจื™ื•ื•ื™ืœืขื’ื™ืขืก ื“ื•ืจืš ืฉื™ืงืŸ ืึท ืกืคึผืขืฆื™ืขืœ ื’ืขืžืึทื›ื˜ืŸ DHCPv6 ืคึผืึทืงืขื˜. ื“ืขืจ ืึธื•ื•ื•ืขืจืคืœืึธื• ืคึผืึทืกื™ืจื˜ ื•ื•ื™ื™ืœ ื“ืขืจ DHCPv6 CLID ื•ื•ืขืจื˜ ื’ืขืฉืจื™ื‘ืŸ ืฆื•ื ื‘ืึทืคืขืจ ืึธืŸ ื ืขืžืขืŸ ืื™ืŸ ื‘ืึทื˜ืจืึทื›ื˜ ืึทื– ื“ืขืจ ืคึผืึทืงืขื˜ ื”ืึทืœื˜ ื“ื™ ื“ืึทื˜ืŸ ืื™ืŸ ื”ืขืงืกืึทื“ืขืฆื™ืžืึทืœ ื ืึธื˜ืึทืฆื™ืข, ื•ื•ืึธืก ื ื™ืฆื˜ ื“ืจื™ื™ "%xx" ื‘ื™ื™ื˜ืก ืคึฟืึทืจ ื™ืขื“ืŸ ืคืึทืงื˜ื™ืฉืŸ CLID ื‘ื™ื™ื˜ (ืœืžืฉืœ, ืกื˜ืึธืจื™ืจืŸ ืึท 1000-ื‘ื™ื™ื˜ CLID ื•ื•ืึธืœื˜ ืจืขื–ื•ืœื˜ื™ืจืŸ ืื™ืŸ 3000 ื‘ื™ื™ื˜ืก ื•ื•ืึธืก ื•ื•ืขืจืŸ ื’ืขืฉืจื™ื‘ืŸ).
  • CVE-2026-2291 โ€” ื ื‘ืึทืคืขืจ ืื™ื‘ืขืจืคืœื•ืก ืื™ืŸ ื“ืขืจ extract_name() ืคื•ื ืงืฆื™ืข ืขืจืœื•ื™ื‘ื˜ ืืŸ ืื˜ืืงื™ืจืขืจ ืฆื• ืืจื™ื™ื ืœื™ื™ื’ืŸ ืคืึทืœืฉืข ืจืขืงืึธืจื“ืก ืื™ืŸ ื“ื™ DNS ืงืขืฉ ืื•ืŸ ืจื™ื“ืขืจืขืงื˜ืŸ ื ื“ืึธืžืขื™ืŸ ืฆื• ืืŸ ืึทื ื“ืขืจ IP ืึทื“ืจืขืก. ื“ืขืจ ืื™ื‘ืขืจืคืœื•ืก ืื™ื– ื’ืขืฉืขืŸ ืฆื•ืœื™ื‘ ื ื‘ืึทืคืขืจ ืึทืœืึธืงืึทืฆื™ืข ื•ื•ืึธืก ื”ืื˜ ื ื™ืฉื˜ ืจื™ื›ื˜ื™ืง ื’ืขืงืขื ื˜ ืึทื ื˜ืœื•ื™ืคืŸ ื’ืขื•ื•ื™ืกืข ืื•ืชื™ื•ืช ืื™ืŸ ื“ืขืจ ืื™ื ืขืจืœืขื›ืขืจ ืจืขืคึผืจืขื–ืขื ื˜ืึทืฆื™ืข ืคื•ืŸ โ€‹โ€‹ื ื“ืึธืžืขื™ืŸ ื ืึธืžืขืŸ ืื™ืŸ dnsmasq.
  • CVE-2026-4893 ืื™ื– ืืŸ ืื™ื ืคืืจืžืืฆื™ืข-ืœื™ืขืง ื•ื•ืืก ืขืจืœื•ื™ื‘ื˜ ืฆื• ื‘ื™ื™ื’ื™ื™ืŸ DNS ื•ื•ืขืจื™ืคื™ืงืืฆื™ืข ื“ื•ืจืš ืฉื™ืงืŸ ื ืกืคืขืฆื™ืขืœ ื’ืขืžืื›ื˜ืŸ DNS ืคืืงืขื˜ ื•ื•ืืก ืื ื˜ื”ืืœื˜ ืงืœื™ืขื ื˜ ืกื•ื‘ื ืขื˜ ืื™ื ืคืืจืžืืฆื™ืข (RFC 7871). ื“ื™ ืฉื•ื•ืื›ืงื™ื™ื˜ ืงืขืŸ ื•ื•ืขืจืŸ ื’ืขื ื•ืฆื˜ ืฆื• ืื™ื‘ืขืจืคื™ืจืŸ DNS ืขื ื˜ืคืขืจืก ืื•ืŸ ืื™ื‘ืขืจืคื™ืจืŸ ื‘ืื ื•ืฆืขืจ ืฆื•ื ืื˜ืืงื™ืจืขืจ'ืก ื“ืืžืขื™ืŸ. ื“ื™ ืฉื•ื•ืื›ืงื™ื™ื˜ ื•ื•ืขืจื˜ ื’ืขืคืืจืฉืืคื˜ ื“ื•ืจืš ืื™ื‘ืขืจื’ืขื‘ืŸ ื“ื™ OPT ืจืขืงืืจื“ ืœืขื ื’ ืฆื• ื“ื™ check_source() ืคื•ื ืงืฆื™ืข ืื ืฉื˜ืื˜ ื“ื™ ืคืืงืขื˜ ืœืขื ื’, ื•ื•ืืก ืคืืจืื•ืจื–ืื›ื˜ ืื– ื“ื™ ืคื•ื ืงืฆื™ืข ื–ืืœ ืฉื˜ืขื ื“ื™ื’ ืฆื•ืจื™ืงื’ืขื‘ืŸ ื ื’ืขืœื•ื ื’ืขื ืข ื•ื•ืขืจื™ืคื™ืงืืฆื™ืข ืจืขื–ื•ืœื˜ืื˜.
  • CVE-2026-4891 - ืืŸ ืื•ื™ืกืขืจ-ื“ื™-ื’ืจืขื ืขืฅ ืœื™ื™ืขืŸ ืฉื•ื•ืื›ืงื™ื™ื˜ ืื™ืŸ DNSSEC ื•ื•ืึทืœื™ื“ืึทืฆื™ืข ืจืขื–ื•ืœื˜ื™ืจื˜ ืื™ืŸ ื ื–ื›ึผืจื•ืŸ ืœื™ืง ืื™ืŸ ื“ืขืจ ืขื ื˜ืคืขืจ ื•ื•ืขืŸ ืžืขืŸ ืคึผืจืึทืกืขืกื™ืจื˜ ื ืกืคึผืขืฆื™ืขืœ ื’ืขืžืึทื›ื˜ืข DNS ืงื•ื•ืขืจื™.
  • CVE-2026-4890 โ€“ ื DNSSEC ื•ื•ืึทืœื™ื“ืึทืฆื™ืข ืฉืœื™ื™ืฃ ืงืขืŸ ืจืขื–ื•ืœื˜ื™ืจืŸ ืื™ืŸ ืึท ืึธืคึผืœื™ื™ืงืขื ื•ื ื’ ืคื•ืŸ ืกืขืจื•ื•ื™ืก ื“ื•ืจืš ืึท ืกืคึผืขืฆื™ืขืœ ื’ืขืžืึทื›ื˜ืŸ DNS ืคึผืึทืงืขื˜.
  • CVE-2026-5172 - ืืŸ ืื•ื™ืกืขืจ-ื“ื™-ื’ืจืขื ืขืฆืŸ ืœื™ื™ืขื ื•ื ื’ ืื™ืŸ ื“ืขืจ extract_addresses() ืคื•ื ืงืฆื™ืข ืคื™ืจื˜ ืฆื• ื ืงืจืืš ื‘ื™ื™ื ืคืจืืฆืขืกื™ืจืŸ ืกืคืขืฆื™ืขืœ ื’ืขืžืื›ื˜ืข DNS ืจืขืืงืฆื™ืขืก.

ื“ืขืจ ืกื˜ืึทื˜ื•ืก ืคื•ืŸ ื“ื™ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ ืคื™ืงืก ืคึฟืึทืจ ื“ื™ืกื˜ืจื™ื‘ื™ื•ืฉืึทื ื– ืงืขืŸ ื•ื•ืขืจืŸ ืึทืกืกืขืกืกืขื“ ืื•ื™ืฃ ื“ื™ ืคืืœื’ืขื ื“ืข ื‘ืœืขื˜ืขืจ (ืื•ื™ื‘ ืึท ื‘ืœืึทื˜ ืื™ื– ื ื™ืฉื˜ ื‘ื ื™ืžืฆื, ื”ืึธื‘ืŸ ื“ื™ ื“ื™ืกื˜ืจื™ื‘ื™ื•ืฉืึทืŸ ื“ืขื•ื•ืขืœืึธืคึผืขืจืก ื ืึธืš ื ื™ืฉื˜ ืึธื ื’ืขื”ื•ื™ื‘ืŸ ืื•ื™ืกืคืึธืจืฉืŸ ื“ืขื ืคึผืจืึธื‘ืœืขื): Debian, Ubuntu, SUSE, RHEL, Gentoo, Arch, Fedora, OpenWRT, ืื•ืŸ FreeBSD. ื“ืขืจ Dnsmasq ืคึผืจืึธื™ืขืงื˜ ื•ื•ืขืจื˜ ื’ืขื ื•ืฆื˜ ืื™ืŸ ื“ืขืจ ืึทื ื“ืจื•ื™ื“ ืคึผืœืึทื˜ืคืึธืจืžืข ืื•ืŸ ืกืคึผืขืฆื™ืึทืœื™ื–ื™ืจื˜ืข ื“ื™ืกื˜ืจื™ื‘ื™ื•ืฉืึทื ื– ื•ื•ื™ OpenWrt ืื•ืŸ DD-WRT, ื•ื•ื™ ืื•ื™ืš ืื™ืŸ ื“ืขืจ ืคื™ืจืžื•ื•ืขืจ ืคื•ืŸ ื•ื•ื™ื™ืจืœืขืก ืจืึธื•ื˜ืขืจืก ืคื•ืŸ ืคื™ืœืข ืคืึทื‘ืจื™ืงืึทื ื˜ืŸ. ืื™ืŸ ื ืึธืจืžืึทืœ ื“ื™ืกื˜ืจื™ื‘ื™ื•ืฉืึทื ื–, ืงืขืŸ Dnsmasq ื•ื•ืขืจืŸ ืื™ื ืกื˜ืึทืœื™ืจื˜ ื•ื•ืขืŸ ืžืขืŸ ื ื™ืฆื˜ libvirt ืฆื• ืฆื•ืฉื˜ืขืœืŸ DNS ืกืขืจื•ื•ื™ืก ืื™ืŸ ื•ื•ื™ืจื˜ื•ืึทืœ ืžืึทืฉื™ื ืขืŸ ืึธื“ืขืจ ืึทืงื˜ื™ื•ื•ื™ื–ื™ืจื˜ ืื™ืŸ ื“ืขื NetworkManager ืงืึธื ืคื™ื’ื•ืจืึทื˜ืึธืจ.

ืžืงื•ืจ: opennet.ru

ืงื•ื™ืคืŸ ืคืึทืจืœืึธื–ืœืขืš ื”ืึธืกื˜ื™ื ื’ ืคึฟืึทืจ ื–ื™ื™ื˜ืœืขืš ืžื™ื˜ DDoS ืฉื•ืฅ, VPS VDS ืกืขืจื•ื•ืขืจืก ๐Ÿ”ฅ ืงื•ื™ืคื˜ ืคืึทืจืœืขืกืœืขื›ืข ื•ื•ืขื‘ื–ื™ื™ื˜ืœ ื”ืึธืกื˜ื™ื ื’ ืžื™ื˜ DDoS ืฉื•ืฅ, VPS VDS ืกืขืจื•ื•ืขืจืก | ProHoster