The decode_search function in dhcp.c in dhcpcd 3.x does not properly free allocated memory, which allows remote DHCP servers to cause a denial of service via a crafted response.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
21 Nov 2024, 01:46
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.debian.org/security/2016/dsa-3534 - | |
References | () http://www.openwall.com/lists/oss-security/2015/12/02/1 - | |
References | () http://www.openwall.com/lists/oss-security/2015/12/03/1 - | |
References | () https://bugs.launchpad.net/ubuntu/+source/dhcpcd/+bug/1517226 - | |
References | () https://launchpadlibrarian.net/228152582/dhcp.c.patch - |
Information
Published : 2016-04-11 15:59
Updated : 2024-11-21 01:46
NVD link : CVE-2012-6700
Mitre link : CVE-2012-6700
CVE.ORG link : CVE-2012-6700
JSON object : View
Products Affected
dhcpcd_project
- dhcpcd
debian
- debian_linux
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer