Pymumu maintains SmartDNS, a focused DNS resolution and filtering utility with a modest vulnerability footprint centered on memory-safety issues and incomplete vulnerability characterization. The observed weakness classes include out-of-bounds writes and cases where technical detail remains sparse, reflecting the parsing and buffer-management demands typical of network daemon software. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pymumu over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-31470CRITICAL SmartDNS through 41 before 56d0332 allows an out-of-bounds write because of a stack-based buffer overflow in the _dns_encode_domain function in the dns.c file, via a crafted DNS re | Apr 28, 2023 | 9.8 | 29 | NO | NO |
CVE-2024-24199HIGH smartdns commit 54b4dc was discovered to contain a misaligned address at smartdns/src/dns.c. | Jun 6, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-24198HIGH smartdns commit 54b4dc was discovered to contain a misaligned address at smartdns/src/util.c. | Jun 6, 2024 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pymumu.
Media articles that mention a CVE ID that affects a product developed by Pymumu — matched by CVE ID, not by vendor name.