PT-2009-6672 · Isc+3 · Dhcp3-Common+18

Vincent Danen

·

Published

1970-01-01

·

Updated

2017-09-29

·

CVE-2009-0692

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions dhcp versions prior to 3.1.1-r1 dhcp-relay versions (affected versions not specified) dhcp-server versions (affected versions not specified) dhcp-client versions (affected versions not specified) dhcp3-dev versions (affected versions not specified) dhcp3-client versions (affected versions not specified) dhcp3-relay versions (affected versions not specified) dhcp3-server versions (affected versions not specified) dhcp3-server-ldap versions (affected versions not specified) dhcp3-common versions (affected versions not specified) libvolume id versions (affected versions not specified) libvolume id-devel versions (affected versions not specified) libvolume id1 versions (affected versions not specified) udev versions (affected versions not specified) udev-debugsource versions (affected versions not specified) udev-debuginfo versions (affected versions not specified) libudev-devel versions (affected versions not specified) libudev0 versions (affected versions not specified)
Description The issue is related to multiple vulnerabilities in various packages of different operating systems, including SUSE Linux Enterprise, openSUSE, Gentoo Linux, and Debian GNU/Linux. These vulnerabilities can lead to a breach of confidentiality, integrity, and availability of protected information. The exploitation of these vulnerabilities can be carried out remotely or locally, depending on the specific package and operating system. According to the information from Mitre, a stack-based buffer overflow in the script write params method in client/dhclient.c in ISC DHCP dhclient allows remote DHCP servers to execute arbitrary code via a crafted subnet-mask option.
Recommendations As a temporary workaround, consider disabling the dhcp service until a patch is available. Restrict access to the vulnerable dhcp-relay and dhcp-server modules to minimize the risk of exploitation. Avoid using the dhcp-client until the issue is resolved. Update dhcp to version 3.1.1-r1 or later. Update dhcp3-dev to the latest version. Update dhcp3-client to the latest version. Update dhcp3-relay to the latest version. Update dhcp3-server to the latest version. Update dhcp3-server-ldap to the latest version. Update dhcp3-common to the latest version. Update libvolume id to the latest version. Update libvolume id-devel to the latest version. Update libvolume id1 to the latest version. Update udev to the latest version. Update udev-debugsource to the latest version. Update udev-debuginfo to the latest version. Update libudev-devel to the latest version. Update libudev0 to the latest version. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-01985
BDU:2015-01986
BDU:2015-01987
BDU:2015-01988
BDU:2015-01989
BDU:2015-02011
BDU:2015-02012
BDU:2015-02013
BDU:2015-04228
BDU:2015-04229
BDU:2015-04230
BDU:2015-04231
BDU:2015-04232
BDU:2015-04233
BDU:2015-04234
BDU:2015-05179
BDU:2015-05180
BDU:2015-05181
BDU:2015-05182
BDU:2015-05183
BDU:2015-05184
BDU:2015-05185
BDU:2015-05186
BDU:2015-05187
BDU:2015-05188
BDU:2015-05189
BDU:2015-05190
BDU:2015-05191
BDU:2015-05192
BDU:2015-05193
BDU:2015-05194
BDU:2015-05195
BDU:2015-05196
BDU:2015-05197
BDU:2015-05198
BDU:2015-05199
BDU:2015-05200
BDU:2015-05201
BDU:2015-07190
BDU:2015-07191
BDU:2015-07192
BDU:2015-09384
CVE-2009-0692
DSA-1833-1
DSA-1833-2
RHSA-2009:1136
RHSA-2009:1154
RHSA-2009_1136

Affected Products

Red Hat
Dhcp
Dhcpclient
Dhcp-Relay
Dhcp-Server
Dhcp3-Client
Dhcp3-Common
Dhcp3-Dev
Dhcp3-Relay
Dhcp3-Server
Dhcp3-Server-Ldap
Libudev-Devel
Libudev0
Libvolume Id
Libvolume Id-Devel
Libvolume Id1
Udev
Udev-Debuginfo
Udev-Debugsource