Dnsmasq · Dnsmasq · CVE-2026-13002
**Name of the Vulnerable Software and Affected Versions**
dnsmasq (affected versions not specified)
**Description**
A flaw in the `dnssec.c` library can cause the dnsmasq service to enter an infinite loop. An attacker controlling any DNSSEC-signed zone can trigger this state by sending a single crafted response, which hangs the process and disables all DNS resolution for connected clients.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.