CVE-2004-0661: Medium severity D-Link DI-604 vulnerability
Integer signedness error in D-Link AirPlus DI-614+ running firmware 2.30 and earlier allows remote attackers to cause a denial of service (IP lease depletion) via a DHCP request with the LEASETIME option set to -1, which makes the DHCP lease valid for thirteen or more years.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2004-0661?
CVE-2004-0661 has a severity rating that indicates it could lead to a denial of service for affected devices.
How do I fix CVE-2004-0661?
To mitigate CVE-2004-0661, you should upgrade the firmware of your D-Link devices to a version later than 2.30.
What devices are affected by CVE-2004-0661?
CVE-2004-0661 affects D-Link AirPlus DI-614+ running firmware version 2.30 and earlier, as well as DI-604 and DI-624 devices.
What kind of attack does CVE-2004-0661 enable?
CVE-2004-0661 allows attackers to conduct a denial of service attack through DHCP lease depletion.
What does the LEASETIME option in CVE-2004-0661 do?
In the context of CVE-2004-0661, setting the LEASETIME option to -1 results in DHCP leases being valid for excessively long periods.