dbugs[verified]@ptdbugsPatch
The article details a heap buffer overflow in Dnsmasq, explains the technical mechanics and impact, and notes that the issue is fixed in newer releases.
kokumօtօ[verified]@__kokumotoDisclosure
An article announces six new memory vulnerabilities in dnsmasq, including CVE-2026-4892 that enables arbitrary root code execution via DHCPv6 packets, with other impacts such as cache poisoning, DoS, and information leakage.
DFIR Radar[verified]@DFIR_RadarPatch
The post discloses a remote heap buffer overflow in Dnsmasq that permits RCE via a malicious upstream DNS server, emphasizes urgent patching with versions 2.92rel2/2.93, and provides detailed technical exploitation information but no PoC or evidence of active attacks.
WindowsForum[verified]@windowsforumDisclosure
The tweet announces Microsoft’s logging of CVE-2026-2291, noting that no patch has been released and highlighting Windows as part of the attack surface.
Samet[verified]@sametatingPatch
Six long‑standing dnsmasq CVEs are disclosed with patches already released or coming soon. No proof of concept, exploit, or active exploitation evidence is provided.
Samet[verified]@sametatingPatch
The tweet lists six dnsmasq CVEs affecting nearly all versions, with patches released for 2.92rel2 and 2.93rc1. No PoC, exploit code, or evidence of active exploitation is mentioned.
ThreatCluster[verified]@threatclusterPatch
Pi‑hole’s 6.6.2 update patches six critical dnsmasq CVEs that could allow code execution and denial‑of‑service on Arch, Red Hat, and Ubuntu systems.
Gray Hats@the_yellow_fallPatch
The tweet highlights the discovery of six critical dnsmasq flaws and urges users to apply the 2.92rel2 firmware patch, providing technical details but no exploit code or active exploitation reports.