ISC DHCP 4.1.x prior to 4.1-ESV-R13 and 4.2.x and 4.3.x prior to 4.3.4 does not restrict the number of concurrent TCP sessions, which allows remote malicious users to cause a denial of service (INSIST assertion failure or request-processing outage) by establishing many sessions.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
isc dhcp 4.1-esv |
||
isc dhcp 4.1.0 |
||
isc dhcp 4.1.1 |
||
isc dhcp 4.1.2 |
||
isc dhcp 4.2.0 |
||
isc dhcp 4.2.1 |
||
isc dhcp 4.2.2 |
||
isc dhcp 4.2.3 |
||
isc dhcp 4.2.4 |
||
isc dhcp 4.2.5 |
||
isc dhcp 4.2.6 |
||
isc dhcp 4.2.7 |
||
isc dhcp 4.2.8 |
||
isc dhcp 4.3.0 |
||
isc dhcp 4.3.1 |
||
isc dhcp 4.3.2 |
||
isc dhcp 4.3.3 |
||
debian debian linux 8.0 |
||
canonical ubuntu linux 14.04 |
||
canonical ubuntu linux 16.04 |
||
canonical ubuntu linux 17.10 |