PT-1999-1364 · Isc · Dhcpd
Published
1999-12-31
·
Updated
2016-10-18
·
CVE-1999-0808
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
ISC DHCP Distribution server (dhcpd) versions 1.0 through 2.0
Description
The issue is related to multiple buffer overflows that can be triggered by a remote attacker sending long options to the server. This can cause a denial of service, resulting in the server crashing, and potentially allow the execution of arbitrary commands.
Recommendations
For versions 1.0 through 2.0, update to a version that includes a fix for the buffer overflow issues to prevent potential denial of service and arbitrary command execution.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Dhcpd