ISC DHCP 4.x before 4.1-ESV-R12-P1, 4.2.x, and 4.3.x before 4.3.3-P1 allows remote attackers to cause a denial of service (application crash) via an invalid length field in a UDP IPv4 packet.
{
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_name": "isc-dhcp-client",
            "binary_version": "4.2.4-7ubuntu12.4"
        },
        {
            "binary_name": "isc-dhcp-common",
            "binary_version": "4.2.4-7ubuntu12.4"
        },
        {
            "binary_name": "isc-dhcp-dev",
            "binary_version": "4.2.4-7ubuntu12.4"
        },
        {
            "binary_name": "isc-dhcp-relay",
            "binary_version": "4.2.4-7ubuntu12.4"
        },
        {
            "binary_name": "isc-dhcp-server",
            "binary_version": "4.2.4-7ubuntu12.4"
        },
        {
            "binary_name": "isc-dhcp-server-ldap",
            "binary_version": "4.2.4-7ubuntu12.4"
        }
    ]
}