Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

Fedora 25: 2017-167cfa7b09 Moderate: dhcp Authentication Flaws

fedora
Calendar Grey July 8, 2017
Dist Fedora Esm H88
The recent update to the Dynamic Host Configuration Protocol for Fedora 25 tackles important security vulnerabilities related to authentication threats.
Update to new ISC supported version 9.9.10.

Summary

DHCP (Dynamic Host Configuration Protocol)

Update to new ISC supported version 9.9.10.

[ 1 ] Bug #1466612 - CVE-2017-3142 bind99: bind: An error in TSIG authentication can permit unauthorized zone transfers [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=1466612

[ 2 ] Bug #1466610 - CVE-2017-3143 bind99: bind: An error in TSIG authentication can permit unauthorized dynamic updates [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=1466610

[ 3 ] Bug #1461639 - CVE-2017-3140 bind99: bind: Error processing RPZ rules leads to endless loop while handling query [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=1461639

su -c 'dnf upgrade dhcp' at the command line.

For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Change Log

References

Update Instructions

Severity
important
Lowest
Low
Medium
High
Critical

Product: Fedora 25
Version: 4.3.5
Release: 3.fc25
URL: Summary : Dynamic host configuration protocol software

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here