7.8
CVSSv2

CVE-2011-2748

Published: 15/08/2011 Updated: 08/01/2020
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The server in ISC DHCP 3.x and 4.x prior to 4.2.2, 3.1-ESV prior to 3.1-ESV-R3, and 4.1-ESV prior to 4.1-ESV-R3 allows remote malicious users to cause a denial of service (daemon exit) via a crafted DHCP packet.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

isc dhcp 3.0

isc dhcp 3.0.1

isc dhcp 3.0.2

isc dhcp 3.0.3

isc dhcp 3.0.4

isc dhcp 3.0.5

isc dhcp 3.0.6

isc dhcp 3.1

isc dhcp 3.1-esv

isc dhcp 3.1.0

isc dhcp 3.1.1

isc dhcp 3.1.2

isc dhcp 3.1.3

isc dhcp 4.0

isc dhcp 4.0-esv

isc dhcp 4.0.0

isc dhcp 4.0.1

isc dhcp 4.0.2

isc dhcp 4.0.3

isc dhcp 4.1-esv

isc dhcp 4.1.0

isc dhcp 4.1.1

isc dhcp 4.1.2

isc dhcp 4.2.0

isc dhcp 4.2.1

canonical ubuntu linux 8.04

canonical ubuntu linux 10.04

canonical ubuntu linux 10.10

canonical ubuntu linux 11.04

debian debian linux 5.0

debian debian linux 6.0

debian debian linux 7.0

Vendor Advisories

Debian Bug report logs - #638404 isc-dhcp: two denial-of-service issues Package: isc-dhcp; Maintainer for isc-dhcp is Debian ISC DHCP Maintainers <isc-dhcp@packagesdebianorg>; Reported by: Michael Gilbert <michaelsgilbert@gmailcom> Date: Fri, 19 Aug 2011 03:54:01 UTC Severity: important Tags: security Found in ...
An attacker could send crafted input to DHCP and cause it to crash ...
David Zych discovered that the ISC DHCP crashes when processing certain packets, leading to a denial of service For the oldstable distribution (lenny), this problem has been fixed in version 311-6+lenny6 of the dhcp3 package For the stable distribution (squeeze), this problem has been fixed in version 411-P1-15+squeeze3 of the isc-dhcp packag ...