openSUSE 10 Security Update : dhcp (dhcp-6336)
Critical Nessus Plugin ID 41996
SynopsisThe remote openSUSE host is missing a security update.
DescriptionThe DHCP client (dhclient) could be crashed by a malicious DHCP server sending a overlong subnet field. (CVE-2009-0692)
In some circumstances code execution might be possible, but might is likely caught by the buffer overflow checking of the FORTIFY_SOURCE extension.
SolutionUpdate the affected dhcp packages.