CVE-2011-2717: Critical severity linux dhcpv6 client (dhcp6c) vulnerability
The DHCPv6 client (dhcp6c) as used in the dhcpv6 project through 2011-07-25 allows remote DHCP servers to execute arbitrary commands via shell metacharacters in a hostname obtained from a DHCP message.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-2717?
CVE-2011-2717 has a moderate severity rating due to the potential for remote command execution.
How do I fix CVE-2011-2717?
To fix CVE-2011-2717, upgrade to the latest version of the dhcp6c client that addresses this vulnerability.
Which systems are affected by CVE-2011-2717?
CVE-2011-2717 affects the dhcp6c client as used in Linux distributions and specifically Red Hat Enterprise Linux versions 4.0 and 5.0.
What type of vulnerability is CVE-2011-2717?
CVE-2011-2717 is a command injection vulnerability that allows remote DHCP servers to execute arbitrary commands.
What are the implications of CVE-2011-2717?
The implications of CVE-2011-2717 include the potential compromise of systems due to unauthorized command execution through DHCP.