CVE-2011-4539: Input Validation
dhcpd in ISC DHCP 4.x before 4.2.3-P1 and 4.1-ESV before 4.1-ESV-R4 does not properly handle regular expressions in dhcpd.conf, which allows remote attackers to cause a denial of service (daemon crash) via a crafted request packet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-4539?
CVE-2011-4539 has been classified as a moderate severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2011-4539?
To fix CVE-2011-4539, upgrade to ISC DHCP version 4.2.3-P1 or 4.1-ESV-R4 or later.
Which versions of ISC DHCP are affected by CVE-2011-4539?
CVE-2011-4539 affects ISC DHCP versions 4.0, 4.1-ESV up to 4.1-ESV-R3, and versions earlier than 4.2.3-P1.
What type of attack can exploit CVE-2011-4539?
CVE-2011-4539 can be exploited by remote attackers to send crafted request packets that cause the DHCP daemon to crash.
Is CVE-2011-4539 related to DNS issues?
No, CVE-2011-4539 specifically pertains to the DHCP daemon and its handling of regular expressions, not DNS.