Mandriva Linux Security Advisory : dhcp (MDVSA-2011:073)

high Nessus Plugin ID 53369

Synopsis

The remote Mandriva Linux host is missing one or more security updates.

Description

A vulnerability has been found and corrected in ISC DHCP :

dhclient in ISC DHCP 3.0.x through 4.2.x before 4.2.1-P1, 3.1-ESV before 3.1-ESV-R1, and 4.1-ESV before 4.1-ESV-R2 allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a DHCP message (CVE-2011-0997).

Additionally for Corporate Server 4 and Enterprise Server 5 ISC DHCP has been upgraded from the 3.0.7 version to the 4.1.2-P1 version which brings many enhancements such as better ipv6 support.

Packages for 2009.0 are provided as of the Extended Maintenance Program. Please visit this link to learn more:
http://store.mandriva.com/product_info.php?cPath=149 products_id=490

The updated packages have upgraded to the 4.1.2-P1 version and patched to correct this issue.

Solution

Update the affected packages.

See Also

http://ftp.isc.org/isc/dhcp/dhcp-4.1.2-P1-RELNOTES

https://www.isc.org/software/dhcp/advisories/CVE-2011-0997

Plugin Details

Severity: High

ID: 53369

File Name: mandriva_MDVSA-2011-073.nasl

Version: 1.12

Type: local

Published: 4/12/2011

Updated: 1/6/2021

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 5.1

CVSS v2

Risk Factor: High

Base Score: 7.5

Temporal Score: 5.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Information

CPE: p-cpe:/a:mandriva:linux:dhcp-client, p-cpe:/a:mandriva:linux:dhcp-common, p-cpe:/a:mandriva:linux:dhcp-devel, p-cpe:/a:mandriva:linux:dhcp-doc, p-cpe:/a:mandriva:linux:dhcp-relay, p-cpe:/a:mandriva:linux:dhcp-server, cpe:/o:mandriva:linux:2009.0, cpe:/o:mandriva:linux:2010.0, cpe:/o:mandriva:linux:2010.1

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/Mandrake/release, Host/Mandrake/rpm-list

Exploit Ease: No known exploits are available

Patch Publication Date: 4/11/2011

Exploitable With

CANVAS (CANVAS)

Reference Information

CVE: CVE-2011-0997

BID: 47176

MDVSA: 2011:073