This is a read-only archive. No new posts or registrations. Privacy Page
Discussion

ISC DHCP vuln - update available

4 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

FYI…

ISC DHCP vuln - update available
- https://www.isc.org/node/472
14 July 2009 - "ISC Releases patches to address security vulnerability. Download patches today*.
ISC dhclient has a stack overflow vulnerability which makes it theoretically possible for a rogue DHCP server to execute arbitrary commands as root on the affected system through stack return subversion…"
* https://www.isc.org/downloadables/12

DHCP Stack Overflow in 'dhclient'
- https://www.isc.org/node/468
Posting date: 2009-07-14
Program Impacted: DHCP
Versions affected: DHCP 4.1 (all versions), 4.0 (all versions), 3.1 (all versions), 3.0 (all versions), 2.0 (all versions)
Severity: High
Exploitable: Remotely …

- http://web.nvd.nist.gov/view/vuln/detail?v…d=CVE-2009-0692

:ph34r:
FYI…

Vuln in dhclient - Check Your Vendor For Patches
- http://isc.sans.org/diary.html?storyid=6850
Last Updated: 2009-07-22 20:26:01 UTC - "US-Cert released VU#410676* which deals with a vulnerability in the ISC DHCP dhclient application. "The ISC DHCP client code (dhclient) contains a stack buffer overflow in the script_write_params() method. dhclient fails to check the length of the server-supplied subnet-mask option before copying it into a buffer. According to ISC, the following versions are affected:
DHCP 4.1 (all versions)
DHCP 4.0 (all versions)
DHCP 3.1 (all versions)
DHCP 3.0 (all versions)
DHCP 2.0 (all versions)"
Red Hat (no version specified) and Ubuntu are known vulnerable. More details are available at * http://www.kb.cert.org/vuls/id/410676 , https://www.isc.org/node/468 and http://vrt-sourcefire.blogspot.com/2009/07…-this-post.html "

> http://web.nvd.nist.gov/view/vuln/detail?v…d=CVE-2009-0692

:ph34r:
FYI…

ISC DHCPv6 vuln/fix - upgrade to 4.1.2-P1, 4.1-ESV-R1, or 4.2.1b1
- http://www.securitytracker.com/id/1024999
Jan 28 2011 - "A remote user can send specially crafted message for an address that was previously declined and internally tagged as abandoned to trigger an assert failure and cause the target DHCPv6 service to crash. DHCPv4 servers are not affected.
Impact: A remote user can cause the target service to crash.
Solution: The vendor has issued a fix (4.1.2-P1, 4.1-ESV-R1, or 4.2.1b1).
The vendor's advisory is available at:
Vendor URL: http://www.isc.org/software/dhcp/advisories/cve-2011-0413
"… Solution: Upgrade to 4.1.2-P1, 4.1-ESV-R1, or 4.2.1b1…"

- http://secunia.com/advisories/43006/
Release Date: 2011-01-27
Software: ISC DHCP 4.1.x, ISC DHCP 4.2.x
CVE Reference: CVE-2011-0413
Solution: Update to version 4.1.2-P1, 4.1-ESV-R1, and 4.2.1b1.
Original Advisory: http://www.isc.org/software/dhcp/advisories/cve-2011-0413

- http://www.securitytracker.com/id/1024999
Jan 28 2011

- http://isc.sans.edu/diary.html?storyid=10321
Last Updated: 2011-01-27 23:43:43 UTC

:ph34r:
FYI…

ISC DHCP v4.2.1-P1 released
DHCP 4.1-ESV-R2
DHCP 3.1-ESV-R1
- http://www.isc.org/software/dhcp
5 Apr 2011

- https://www.isc.org/software/dhcp/advisories/cve-2011-0997
5 Apr 2011

- http://www.h-online.com/security/news/item…on-1222805.html
6 April 2011
___

- http://www.securitytracker.com/id/1025300
Apr 6 2011

- http://secunia.com/advisories/44037/
Release Date: 2011-04-06
Criticality level: Moderately critical …
CVE Reference: CVE-2011-0997

:ph34r: :ph34r:
FYI…

ISC DHCP vuln - update available
- https://secunia.com/advisories/47153/
Release Date: 2011-12-08
Impact: DoS
Where: From local network
CVE Reference: http://web.nvd.nist.gov/view/vuln/detail?v…d=CVE-2011-4539
… vulnerability is reported in versions 4.x prior to versions 4.1-ESV-R4 and 4.2.3-P1.
Solution: Update to versions 4.1-ESV-R4 or 4.2.3-P1.
Original Advisory:
https://www.isc.org/software/dhcp/advisories/cve-2011-4539
07 Dec 2011 - Program Impacted: DHCP
Severity: Medium
Exploitable: remotely…
Download patched versions from the following location:
- http://www.isc.org/software/dhcp

- http://www.securitytracker.com/id/1026393
Dec 8 2011
- http://web.nvd.nist.gov/view/vuln/detail?v…d=CVE-2011-4539
CVSS v2 Base Score: 5.0 (MEDIUM)

:ph34r:
FYI…

ISC DHCP DDNS DHCPv6 fix v4.2.3-P2
- http://www.securitytracker.com/id/1026520
Jan 13 2012
Version(s): 4.2.2, 4.2.3, 4.2.3-P1
… ISC DHCP servers that are serving IPv6 address pools and using Dynamic DNS are affected.
Impact: A remote user can cause denial of service conditions.
Solution: The vendor has issued a fix (4.2.3-P2).
The vendor's advisory is available at:
- https://www.isc.org/software/dhcp/advisories/cve-2011-4868
Download:
- https://www.isc.org/software/dhcp
DHCP 4.2.3-P2 - Released on 12 Jan 2012

- http://web.nvd.nist.gov/view/vuln/detail?v…d=CVE-2011-4868 - 7.1 (HIGH)
Last revised: 01/16/2012

:ph34r:
FYI…

ISC DHCP Memory Leak …
- http://www.securitytracker.com/id/1027300
CVE Reference: http://web.nvd.nist.gov/view/vuln/detail?v…d=CVE-2012-3954 - 3.3
Jul 25 2012
Description: A vulnerability was reported in ISC DHCP. A remote user on the local network can cause denial of service conditions.
Impact: A remote user on the local network can consume excessive memory resources on the target system.
Solution: The vendor has issued a fix (4.1-ESV-R6, 4.2.4-P1).
The vendor's advisory is available at: https://kb.isc.org/article/AA-00737
Severity: Medium

ISC DHCP Client Identifier Infinite Loop …
- http://www.securitytracker.com/id/1027299
CVE Reference: http://web.nvd.nist.gov/view/vuln/detail?v…d=CVE-2012-3571 - 6.1
Jul 25 2012
Description: A vulnerability was reported in ISC DHCP. A remote user on the local network can cause denial of service conditions.
Impact: A remote user on the local network can cause the target service to consume excessive CPU resources on the target system.
Solution: The vendor has issued a fix (4.1-ESV-R6, 4.2.4-P1).
The vendor's advisory is available at: https://kb.isc.org/article/AA-00712
Severity: High

ISC DHCP Client Identifier Buffer Overflow …
- http://www.securitytracker.com/id/1027298
CVE Reference: http://web.nvd.nist.gov/view/vuln/detail?v…d=CVE-2012-3570 - 6.1
Jul 25 2012
Description: A vulnerability was reported in ISC DHCP. A remote user on the local network can cause denial of service conditions…
Impact: A remote user on the local network can cause the target service to crash.
Solution: The vendor has issued a fix (4.2.4-P1).
The vendor's advisory is available at: https://kb.isc.org/article/AA-00714
Severity: High
___

ISC DHCP
- http://atlas.arbor.net/briefs/index#-3966106
Severity: Elevated Severity
July 30, 2012
Local users can cause a denial of service on the ISC DHCP server. Exploit code has been released for this vulnerability.
Analysis: … An attacker could use this for a simple DoS to keep systems from obtaining new leases or to keep the DHCP server from offering new leases. In the event that the DHCP server is down, an attacker could spoof DHCP responses and hand out malicious information. Malware has performed DHCP spoofing in order to redirect users through a compromised host in an attempt to spread the infection.
Source: http://seclists.org/fulldisclosure/2012/Jul/372

:ph34r: :ph34r: :ph34r:
FYI…

ISC DHCP IPv6 - update available
- http://www.securitytracker.com/id/1027528
Sep 13 2012
CVE Reference: http://web.nvd.nist.gov/view/vuln/detail?v…d=CVE-2012-3955 - 7.1 (HIGH)
Impact: Denial of service via network
Version(s): 4.1.x, 4.2.x
Impact: A remote user can cause the target server to crash.
Solution: The vendor has issued a fix (4.1-ESV-R7, 4.2.4-P2).
The vendor's advisory is available at:
https://kb.isc.org/article/AA-00779/75

- https://secunia.com/advisories/50612/
Release Date: 2012-09-13
Impact: DoS
Where: From local network…

:ph34r: