Lucene search

K
nvd[email protected]NVD:CVE-2011-4868
HistoryJan 15, 2012 - 3:55 a.m.

CVE-2011-4868

2012-01-1503:55:12
CWE-399
web.nvd.nist.gov
1

6.1 Medium

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:A/AC:L/Au:N/C:N/I:N/A:C

6.4 Medium

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

79.1%

The logging functionality in dhcpd in ISC DHCP before 4.2.3-P2, when using Dynamic DNS (DDNS) and issuing IPv6 addresses, does not properly handle the DHCPv6 lease structure, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via crafted packets related to a lease-status update.

Affected configurations

NVD
Node
iscdhcpRange4.2.3p1
OR
iscdhcpMatch3.0
OR
iscdhcpMatch3.0beta2patchlevel1
OR
iscdhcpMatch3.0beta2patchlevel10
OR
iscdhcpMatch3.0beta2patchlevel11
OR
iscdhcpMatch3.0beta2patchlevel12
OR
iscdhcpMatch3.0beta2patchlevel13
OR
iscdhcpMatch3.0beta2patchlevel14
OR
iscdhcpMatch3.0beta2patchlevel15
OR
iscdhcpMatch3.0beta2patchlevel16
OR
iscdhcpMatch3.0beta2patchlevel18
OR
iscdhcpMatch3.0beta2patchlevel19
OR
iscdhcpMatch3.0beta2patchlevel2
OR
iscdhcpMatch3.0beta2patchlevel20
OR
iscdhcpMatch3.0beta2patchlevel21
OR
iscdhcpMatch3.0beta2patchlevel22
OR
iscdhcpMatch3.0beta2patchlevel23
OR
iscdhcpMatch3.0beta2patchlevel24
OR
iscdhcpMatch3.0beta2patchlevel3
OR
iscdhcpMatch3.0beta2patchlevel4
OR
iscdhcpMatch3.0beta2patchlevel5
OR
iscdhcpMatch3.0beta2patchlevel6
OR
iscdhcpMatch3.0beta2patchlevel7
OR
iscdhcpMatch3.0beta2patchlevel8
OR
iscdhcpMatch3.0beta2patchlevel9
OR
iscdhcpMatch3.0rc1
OR
iscdhcpMatch3.0rc1patchlevel1
OR
iscdhcpMatch3.0rc10
OR
iscdhcpMatch3.0rc11
OR
iscdhcpMatch3.0rc12
OR
iscdhcpMatch3.0rc2
OR
iscdhcpMatch3.0rc2patchlevel1
OR
iscdhcpMatch3.0rc3
OR
iscdhcpMatch3.0rc4
OR
iscdhcpMatch3.0rc5
OR
iscdhcpMatch3.0rc6
OR
iscdhcpMatch3.0rc7
OR
iscdhcpMatch3.0rc8
OR
iscdhcpMatch3.0rc8patchlevel1
OR
iscdhcpMatch3.0rc9
OR
iscdhcpMatch3.0.1
OR
iscdhcpMatch3.0.1rc1
OR
iscdhcpMatch3.0.1rc10
OR
iscdhcpMatch3.0.1rc11
OR
iscdhcpMatch3.0.1rc12
OR
iscdhcpMatch3.0.1rc13
OR
iscdhcpMatch3.0.1rc14
OR
iscdhcpMatch3.0.1rc2
OR
iscdhcpMatch3.0.1rc3
OR
iscdhcpMatch3.0.1rc4
OR
iscdhcpMatch3.0.1rc5
OR
iscdhcpMatch3.0.1rc6
OR
iscdhcpMatch3.0.1rc7
OR
iscdhcpMatch3.0.1rc8
OR
iscdhcpMatch3.0.1rc9
OR
iscdhcpMatch3.0.2
OR
iscdhcpMatch3.0.2b1
OR
iscdhcpMatch3.0.2rc1
OR
iscdhcpMatch3.0.2rc2
OR
iscdhcpMatch3.0.2rc3
OR
iscdhcpMatch3.0.3
OR
iscdhcpMatch3.0.3b1
OR
iscdhcpMatch3.0.3b2
OR
iscdhcpMatch3.0.3b3
OR
iscdhcpMatch3.0.4
OR
iscdhcpMatch3.0.4b1
OR
iscdhcpMatch3.0.4b2
OR
iscdhcpMatch3.0.4b3
OR
iscdhcpMatch3.0.4rc1
OR
iscdhcpMatch3.0.5
OR
iscdhcpMatch3.0.5rc1
OR
iscdhcpMatch3.0.6rc1
OR
iscdhcpMatch3.1.0
OR
iscdhcpMatch3.1.0a1
OR
iscdhcpMatch3.1.0a2
OR
iscdhcpMatch3.1.0a3
OR
iscdhcpMatch3.1.0b1
OR
iscdhcpMatch3.1.0b2
OR
iscdhcpMatch4.0.0
OR
iscdhcpMatch4.0.0a1
OR
iscdhcpMatch4.0.0a2
OR
iscdhcpMatch4.0.0a3
OR
iscdhcpMatch4.0.0b1
OR
iscdhcpMatch4.0.0b2
OR
iscdhcpMatch4.0.0b3
OR
iscdhcpMatch4.1.0
OR
iscdhcpMatch4.1.0a1
OR
iscdhcpMatch4.1.0a2
OR
iscdhcpMatch4.1.0b1
OR
iscdhcpMatch4.2.0
OR
iscdhcpMatch4.2.0a1
OR
iscdhcpMatch4.2.0a2
OR
iscdhcpMatch4.2.0b1
OR
iscdhcpMatch4.2.0b2
OR
iscdhcpMatch4.2.0rc1
OR
iscdhcpMatch4.2.1
OR
iscdhcpMatch4.2.1b1
OR
iscdhcpMatch4.2.1rc1
OR
iscdhcpMatch4.2.2
OR
iscdhcpMatch4.2.2b1
OR
iscdhcpMatch4.2.2rc1
OR
iscdhcpMatch4.2.3

6.1 Medium

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:A/AC:L/Au:N/C:N/I:N/A:C

6.4 Medium

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

79.1%