LWN.net Logo

dhcp: denial of service

Package(s):dhcp CVE #(s):CVE-2011-4868
Created:January 23, 2012 Updated:January 25, 2012
Description: From the CVE entry:

The logging functionality in dhcpd in ISC DHCP before 4.2.3-P2, when using Dynamic DNS (DDNS) and issuing IPv6 addresses, does not properly handle the DHCPv6 lease structure, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via crafted packets related to a lease-status update.

Alerts:
Fedora FEDORA-2012-0490 2012-01-22
Slackware SSA:2012-237-01 2012-08-24
Gentoo 201301-06 2013-01-09

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds