MGASA-2016-0028

Source
https://advisories.mageia.org/MGASA-2016-0028.html
Import Source
https://advisories.mageia.org/MGASA-2016-0028.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2016-0028
Related
Published
2016-01-20T17:53:26Z
Modified
2016-01-20T17:42:46Z
Summary
Updated dhcp packages fix security vulnerability
Details

A badly formed packet with an invalid IPv4 UDP length field can cause an ISC DHCP server, client, or relay program to terminate abnormally (CVE-2015-8605).

The dhcp package has been updated to version 4.3.3-P1, which fixes this issue and several other bugs.

Also, the package has also been enhanced to provide better support for running a DHCPv6 server (mga#17177).

References
Credits

Affected packages

Mageia:5 / dhcp

Package

Name
dhcp
Purl
pkg:rpm/mageia/dhcp?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.3.3P1-1.mga5

Ecosystem specific

{
    "section": "core"
}