Release date:
Updated on:
Affected Systems:
Isc dhcp Server 4.2.3-P1
Isc dhcp Server 4.2.3
Isc dhcp Server 4.2.2
Unaffected system:
Isc dhcp Server 4.2.3-P2
Description:
--------------------------------------------------------------------------------
Bugtraq id: 51408
Cve id: CVE-2011-4868
Isc dhcp is an open source DHCP server implementation.
Security Vulnerabilities in isc dhcp can be exploited by malicious users to cause DOS.
This vulnerability is caused by a null pointer reference error in the DHCPv6 lease structure when updating the Dynamic DNS lease status, which causes a crash by sending specially crafted DHCP packets.
<* Source: vendor
Link: http://secunia.com/advisories/47555/
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
ISC
---
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.isc.org/