ISC DHCP: Denial of Service
1.
Gentoo Linux Security Advisory
Version Information
| Advisory Reference |
GLSA 201301-06 / ISC DHCP Server |
| Release Date |
January 09, 2013 |
| Latest Revision |
January 09, 2013: 1 |
| Impact |
normal |
| Exploitable |
remote |
| Package |
Vulnerable versions |
Unaffected versions |
Architecture(s) |
| net-misc/dhcp |
<
4.2.4_p2 |
>=
4.2.4_p2 |
All supported architectures
|
Related bugreports:
#362453, #378799, #393617, #398763, #428120, #434880
Synopsis
Multiple vulnerabilities have been found in ISC DHCP, the worst of
which may allow remote Denial of Service.
2.
Impact Information
Background
ISC DHCP is a Dynamic Host Configuration Protocol (DHCP) client/server.
Description
Multiple vulnerabilities have been discovered in ISC DHCP. Please review
the CVE identifiers referenced below for details.
Impact
The vulnerabilities might allow remote attackers to execute arbitrary
code or cause a Denial of Service.
3.
Resolution Information
Workaround
There is no known workaround at this time.
Resolution
All ISC DHCP users should upgrade to the latest version:
Code Listing 3.1: Resolution |
# emerge --sync
# emerge --ask --oneshot --verbose ">=net-misc/dhcp-4.2.4_p2"
|
4.
References
|