isc-dhcp (4.2.4-7ubuntu12.12) trusty-security; urgency=medium
* SECURITY UPDATE: DoS via concurrent TCP sessions
- debian/patches/CVE-2016-2774.patch: limit number of connections in
includes/site.h, omapip/listener.c.
- CVE-2016-2774
* SECURITY UPDATE: DoS via omapi
- debian/patches/CVE-2018-573x.patch: fix socket descriptor leak in
omapip/buffer.c, omapip/message.c.
- CVE-2017-3144
* SECURITY UPDATE: buffer overflow in dhclient
- debian/patches/CVE-2018-573x.patch: check option data size in
common/options.c.
- CVE-2018-5732
* SECURITY UPDATE: reference counter overflow in dhcpd
- debian/patches/CVE-2018-573x.patch: avoid overflow in
common/options.c.
- CVE-2018-5733
* This package does _not_ contain the changes from 4.2.4-7ubuntu12.11 in
trusty-proposed.
Date: 2018-03-01 14:11:15.811065+00:00
Changed-By: Marc Deslauriers <[email protected]>
Signed-By: Ubuntu Archive Robot
<[email protected]>
https://launchpad.net/ubuntu/+source/isc-dhcp/4.2.4-7ubuntu12.12
Sorry, changesfile not available.
--
Trusty-changes mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/trusty-changes