Isc · Isc Dhcp · CVE-2016-2774
**Name of the Vulnerable Software and Affected Versions**
ISC DHCP versions 4.1.x through 4.1-ESV-R12
ISC DHCP versions 4.2.x through 4.3.3
**Description**
The issue allows remote attackers to cause a denial of service by establishing many TCP sessions, due to the lack of restriction on the number of concurrent TCP sessions. This can lead to an INSIST assertion failure or a request-processing outage.
**Recommendations**
For ISC DHCP versions 4.1.x through 4.1-ESV-R12, update to version 4.1-ESV-R13 or later.
For ISC DHCP versions 4.2.x through 4.3.3, update to version 4.3.4 or later.