|
|
| |
|
| |
isc-dhcp: multiple vulnerabilities
| Package(s): | isc-dhcp |
CVE #(s): | CVE-2012-3571
CVE-2012-3954
|
| Created: | July 26, 2012 |
Updated: | August 6, 2012 |
| Description: |
From the Debian advisory:
CVE-2012-3571:
Markus Hietava of the Codenomicon CROSS project discovered that it is
possible to force the server to enter an infinite loop via messages with
malformed client identifiers.
CVE-2012-3954:
Glen Eustace discovered that DHCP servers running in DHCPv6 mode
and possibly DHCPv4 mode suffer of memory leaks while processing messages.
An attacker can use this flaw to exhaust resources and perform denial
of service attacks. |
| Alerts: |
|
( Log in to post comments)
|
|
|