Failure to properly bounds-check a buffer used for processing DHCP options allows a malicious server (or an entity masquerading as a server) to cause a buffer overflow (and resulting crash) in dhclient by sending a response containing a specially constructed options section. Affects ISC DHCP versions 4.1.0 -> 4.1-ESV-R15, 4.2.0 -> 4.2.8, 4.3.0 -> 4.3.6, 4.4.0
{
"versions": [
{
"introduced": "4.1.0"
},
{
"last_affected": "4.1.2"
},
{
"introduced": "4.2.0"
},
{
"fixed": "4.2.8"
},
{
"introduced": "4.3.0"
},
{
"fixed": "4.3.6"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-NA"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r10"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r10b1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r10rc1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r11"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r11b1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r11rc1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r11rc2"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r12"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r12\\-p1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r12b1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r13"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r13b1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r14"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r14b1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r15"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r2"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r3"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r3b1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r4"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r5"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r5b1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r5rc1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r5rc2"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r6"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r7"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r8"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r8b1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r8rc1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r9"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r9b1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1-esv-r9rc1"
},
{
"introduced": "0"
},
{
"last_affected": "4.1.2-p1"
},
{
"introduced": "0"
},
{
"last_affected": "4.4.0"
}
]
}