|
|
Log in / Subscribe / Register

dhcpcd: arbitrary code execution

Package(s):dhcpcd CVE #(s):CVE-2011-0996
Created:April 18, 2011 Updated:January 9, 2013
Description: From the CVE entry:

dhcpcd before 5.2.12 allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a DHCP message.

Alerts:
Gentoo 201301-04 dhcpcd 2013-01-09
Slackware SSA:2011-210-02 dhcpcd 2011-08-01
Pardus 2011-78 dhcpcd 2011-05-26
SUSE SUSE-SR:2011:008 java-1_6_0-ibm, java-1_5_0-ibm, java-1_4_2-ibm, postfix, dhcp6, dhcpcd, mono-addon-bytefx-data-mysql/bytefx-data-mysql, dbus-1, libtiff/libtiff-devel, cifs-mount/libnetapi-devel, rubygem-sqlite3, gnutls, libpolkit0, udisks 2011-05-03
SUSE SUSE-SR:2011:007 NetworkManager, OpenOffice_org, apache2-slms, dbus-1-glib, dhcp/dhcpcd/dhcp6, freetype2, kbd, krb5, libcgroup, libmodplug, libvirt, mailman, moonlight-plugin, nbd, openldap2, pure-ftpd, python-feedparser, rsyslog, telepathy-gabble, wireshark 2011-04-19
openSUSE openSUSE-SU-2011:0352-1 dhcp 2011-04-18
openSUSE openSUSE-SU-2011:0342-1 dhcpcd 2011-04-18
openSUSE openSUSE-SU-2011:0385-1 dhcpcd 2011-04-21

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds