Summary: | net-misc/dhcp: DoS (CVE-2011-0413) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Paweł Hajdan, Jr. (RETIRED) <phajdan.jr> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | base-system |
Priority: | High | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | http://www.isc.org/software/dhcp/advisories/cve-2011-0413 | ||
Whiteboard: | ~3? [ebuild] | ||
Package list: | Runtime testing required: | --- |
Description
Paweł Hajdan, Jr. (RETIRED)
2011-01-27 07:26:34 UTC
It's not obvious whether the crash is exploitable, so assuming it is. The vulnerability is present only in 4.x series, that are still hard masked. Based on http://secunia.com/advisories/43006/ it's only DoS. dhcp-4.2.1 now in the tree and all other dhcp-4.x ebuilds punted. since this is still masked, i'll close out the bug. |