Описание
A malicious client which is allowed to send very large amounts of traffic (billions of packets) to a DHCP server can eventually overflow a 32-bit reference counter, potentially causing dhcpd to crash. Affects ISC DHCP 4.1.0 -> 4.1-ESV-R15, 4.2.0 -> 4.2.8, 4.3.0 -> 4.3.6, 4.4.0.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | released | 4.3.5-3ubuntu2.2 |
| bionic | released | 4.3.5-3ubuntu5 |
| devel | released | 4.3.5-3ubuntu5 |
| esm-infra-legacy/trusty | released | 4.2.4-7ubuntu12.12 |
| esm-infra/bionic | released | 4.3.5-3ubuntu5 |
| esm-infra/xenial | released | 4.3.3-5ubuntu12.9 |
| precise/esm | not-affected | 4.1.ESV-R4-0ubuntu5.13 |
| trusty | released | 4.2.4-7ubuntu12.12 |
| trusty/esm | released | 4.2.4-7ubuntu12.12 |
| upstream | needs-triage |
Показывать по
EPSS
5 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
A malicious client which is allowed to send very large amounts of traffic (billions of packets) to a DHCP server can eventually overflow a 32-bit reference counter, potentially causing dhcpd to crash. Affects ISC DHCP 4.1.0 -> 4.1-ESV-R15, 4.2.0 -> 4.2.8, 4.3.0 -> 4.3.6, 4.4.0.
A malicious client which is allowed to send very large amounts of traffic (billions of packets) to a DHCP server can eventually overflow a 32-bit reference counter, potentially causing dhcpd to crash. Affects ISC DHCP 4.1.0 -> 4.1-ESV-R15, 4.2.0 -> 4.2.8, 4.3.0 -> 4.3.6, 4.4.0.
A malicious client which is allowed to send very large amounts of traf ...
A malicious client which is allowed to send very large amounts of traffic (billions of packets) to a DHCP server can eventually overflow a 32-bit reference counter, potentially causing dhcpd to crash. Affects ISC DHCP 4.1.0 -> 4.1-ESV-R15, 4.2.0 -> 4.2.8, 4.3.0 -> 4.3.6, 4.4.0.
Уязвимость DHCP-сервера dhcpd, вызванная возможностью переполнения 32-разрядного счетчика ссылок и позволяющая вызвать отказ в обслуживании сервера
EPSS
5 Medium
CVSS2
7.5 High
CVSS3