dhcpcd prior to 5.2.12 allows remote malicious users to execute arbitrary commands via shell metacharacters in a hostname obtained from a DHCP message.
roy marples dhcpcd