How "fun" a RemoteCodeExecution vulnerablity in DNSmasq. That thing is probably present on every network worldwide either just in the router or in many embedded devices, phones, id-IoT stuff…

@tbr Most of those devices probably don't use DNSSEC though.

@juliank As Måns rightfully pointed out, only if its DNSmasq has DNSSEC enabled. Also dnsmasq would need to be running as root or you'd need to find a way to elevate from there.
It certainly is a potential attack vector.

