CVE-2023-31470: Pymumu Smartdns

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

SmartDNS through 41 before 56d0332 allows an out-of-bounds write because of a stack-based buffer overflow in the _dns_encode_domain function in the dns.c file, via a crafted DNS request.

Affected products

  • Pymumu Smartdns: up to and including 41

Published 2023-04-28. Last modified 2026-06-17.