Alerts This Week
Warning Icon 1 684
Alerts This Week
Warning Icon 1 684

Fedora 29: FEDORA-2018-71d85bc8cd Critical DHCP Heap Write Issue

fedora
Calendar Grey November 4, 2018
Dist Fedora Esm H88
Correction enacted for heap overflow vulnerability affecting DHCPv6 plugin in Fedora NetworkManager functionalities. Patches are ready for immediate installation.
dhcp: fix out-of-bounds heap write for DHCPv6 with internal plugin (CVE-2018-15688)

Summary

NetworkManager is a system service that manages network interfaces and

connections based on user or automatic configuration. It supports

Ethernet, Bridge, Bond, VLAN, Team, InfiniBand, Wi-Fi, mobile broadband

(WWAN), PPPoE and other devices, and supports a variety of different VPN

services.

dhcp: fix out-of-bounds heap write for DHCPv6 with internal plugin

(CVE-2018-15688)

* Mon Oct 29 2018 Thomas Haller - 1:1.12.4-2

- dhcp: fix out-of-bounds heap write for DHCPv6 with internal plugin (CVE-2018-15688)

[ 1 ] Bug #1639067 - CVE-2018-15688 systemd: Out-of-bounds heap write in systemd-networkd dhcpv6 option handling

https://bugzilla.redhat.com/show_bug.cgi?id=1639067

su -c 'dnf upgrade --advisory FEDORA-2018-71d85bc8cd' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 29
Version: 1.12.4
Release: 2.fc29
Summary: Network connection manager and user applications

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here