Your submission was sent successfully! Close

CVE-2011-0997

Published: 8 April 2011

dhclient in ISC DHCP 3.0.x through 4.2.x before 4.2.1-P1, 3.1-ESV before 3.1-ESV-R1, and 4.1-ESV before 4.1-ESV-R2 allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a DHCP message, as demonstrated by a hostname that is provided to dhclient-script.

Notes

AuthorNote
mdeslaur
a couple of fixes post isc release are included in redhat's bug
patches are from Marius Tomaschewski
Priority

Medium

Status

Package Release Status
dhcp3
Launchpad, Ubuntu, Debian
dapper
Released (3.0.3-6ubuntu7.2)
hardy
Released (3.0.6.dfsg-1ubuntu9.2)
karmic
Released (3.1.2-1ubuntu7.2)
lucid
Released (3.1.3-2ubuntu3.1)
maverick
Released (3.1.3-2ubuntu6.1)
upstream
Released (3.1-ESV-R1)
isc-dhcp
Launchpad, Ubuntu, Debian
dapper Does not exist

hardy Does not exist

karmic Does not exist

lucid Does not exist

maverick Does not exist

upstream
Released (4.2.1-P1)