Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

SciLinux SL6: SLSA-2018-0469-1 Important: Code Execution Risk in dhcp

Scientific Large Esm H446
dhcp: Buffer overflow in dhclient possibly allowing code execution triggered by malicious server (CVE-2018-5732) * dhcp: Reference count overflow in dhcpd allows denial of service (CVE-2018-5733) SL6 x86_64 dhclient-4.1.1-53.P1.el6_9.3.x86_64.rpm dhcp-4.1.1-53.P1.el6_9.3.x86_64.rpm dhcp-common-4.1.1-53.P1.el6_9.3.x86_64.rpm dhcp-debuginfo-4.1.1-53.P1.el6_9.3.i686.rpm dh [More...]
Synopsis:          Important: dhcp security and bug fix update
Advisory ID:       SLSA-2018:0469-1
Issue Date:        2018-03-08
CVE Numbers:       CVE-2018-5732
                   CVE-2018-5733
--

Security Fix(es):

* dhcp: Buffer overflow in dhclient possibly allowing code execution
triggered by malicious server (CVE-2018-5732)

* dhcp: Reference count overflow in dhcpd allows denial of service
(CVE-2018-5733)
--

SL6
  x86_64
    dhclient-4.1.1-53.P1.el6_9.3.x86_64.rpm
    dhcp-4.1.1-53.P1.el6_9.3.x86_64.rpm
    dhcp-common-4.1.1-53.P1.el6_9.3.x86_64.rpm
    dhcp-debuginfo-4.1.1-53.P1.el6_9.3.i686.rpm
    dhcp-debuginfo-4.1.1-53.P1.el6_9.3.x86_64.rpm
    dhcp-devel-4.1.1-53.P1.el6_9.3.i686.rpm
    dhcp-devel-4.1.1-53.P1.el6_9.3.x86_64.rpm
  i386
    dhclient-4.1.1-53.P1.el6_9.3.i686.rpm
    dhcp-4.1.1-53.P1.el6_9.3.i686.rpm
    dhcp-common-4.1.1-53.P1.el6_9.3.i686.rpm
    dhcp-debuginfo-4.1.1-53.P1.el6_9.3.i686.rpm
    dhcp-devel-4.1.1-53.P1.el6_9.3.i686.rpm

- Scientific Linux Development Team