Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.882852
Category:CentOS Local Security Checks
Title:CentOS Update for dhclient CESA-2018:0469 centos6
Summary:Check the version of dhclient
Description:Summary:
Check the version of dhclient

Vulnerability Insight:
The Dynamic Host Configuration Protocol
(DHCP) is a protocol that allows individual devices on an IP network to get
their own network configuration information, including an IP address, a subnet
mask, and a broadcast address. The dhcp packages provide a relay agent and ISC
DHCP service required to enable and administer DHCP on a network.

Security Fix(es):

* dhcp: Buffer overflow in dhclient possibly allowing code execution
triggered by malicious server (CVE-2018-5732)

* dhcp: Reference count overflow in dhcpd allows denial of service
(CVE-2018-5733)

For more details about the security issue(s), including the impact, a CVSS
score, and other related information, refer to the CVE page(s) listed in
the References section.

Red Hat would like to thank ISC for reporting these issues. Upstream
acknowledges Felix Wilhelm (Google) as the original reporter of these
issues.

Affected Software/OS:
dhclient on CentOS 6

Solution:
Please Install the Updated Packages.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2018-5732
Common Vulnerability Exposure (CVE) ID: CVE-2018-5733
BugTraq ID: 103188
http://www.securityfocus.com/bid/103188
Debian Security Information: DSA-4133 (Google Search)
https://www.debian.org/security/2018/dsa-4133
https://lists.debian.org/debian-lts-announce/2018/03/msg00015.html
RedHat Security Advisories: RHSA-2018:0469
https://access.redhat.com/errata/RHSA-2018:0469
RedHat Security Advisories: RHSA-2018:0483
https://access.redhat.com/errata/RHSA-2018:0483
http://www.securitytracker.com/id/1040437
https://usn.ubuntu.com/3586-1/
https://usn.ubuntu.com/3586-2/
CopyrightCopyright (C) 2018 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.