First published: Fri Oct 19 2007(Updated: )
ISC dhcpd is prone to denial of service attack (daemon crash) when DHCP client specifies large value for dhcp-max-message-size in the request. Problem only occurs when dhcpd is configured to provide clients with very large amount of DHCP options. Such configurations seems very unlikely to exist in the real deployments.
Affected Software | Affected Version | How to fix |
---|---|---|
ISC DHCP |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-339561 is classified as a denial of service vulnerability.
To fix REDHAT-BUG-339561, ensure that dhcpd is not configured to provide excessively large amounts of DHCP options.
The software affected by REDHAT-BUG-339561 is ISC DHCP server, commonly referred to as isc-dhcp-server.
The vulnerability REDHAT-BUG-339561 is caused when a DHCP client requests a large dhcp-max-message-size, which leads to a daemon crash.
Yes, REDHAT-BUG-339561 occurs specifically when dhcpd is configured improperly with a very large amount of DHCP options.