CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:N/I:N/A:P
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS
Percentile
95.8%
A vulnerability stemming from failure to properly clean up closed OMAPI
connections can lead to exhaustion of the pool of socket descriptors
available to the DHCP server. Affects ISC DHCP 4.1.0 to 4.1-ESV-R15, 4.2.0
to 4.2.8, 4.3.0 to 4.3.6. Older versions may also be affected but are well
beyond their end-of-life (EOL). Releases prior to 4.1.0 have not been
tested.
Author | Note |
---|---|
mdeslaur | DoS over OMAPI port only, see ISC kb article for workarounds, or properly limit access to ports |
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
ubuntu | 17.10 | noarch | isc-dhcp | < 4.3.5-3ubuntu2.2 | UNKNOWN |
ubuntu | 18.04 | noarch | isc-dhcp | < 4.3.5-3ubuntu5 | UNKNOWN |
ubuntu | 18.10 | noarch | isc-dhcp | < 4.3.5-3ubuntu5 | UNKNOWN |
ubuntu | 19.04 | noarch | isc-dhcp | < 4.3.5-3ubuntu5 | UNKNOWN |
ubuntu | 19.10 | noarch | isc-dhcp | < 4.3.5-3ubuntu5 | UNKNOWN |
ubuntu | 20.04 | noarch | isc-dhcp | < 4.3.5-3ubuntu5 | UNKNOWN |
ubuntu | 20.10 | noarch | isc-dhcp | < 4.3.5-3ubuntu5 | UNKNOWN |
ubuntu | 21.04 | noarch | isc-dhcp | < 4.3.5-3ubuntu5 | UNKNOWN |
ubuntu | 14.04 | noarch | isc-dhcp | < 4.2.4-7ubuntu12.12 | UNKNOWN |
ubuntu | 16.04 | noarch | isc-dhcp | < 4.3.3-5ubuntu12.9 | UNKNOWN |
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:N/I:N/A:P
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS
Percentile
95.8%