A vulnerability stemming from failure to properly clean up closed OMAPI connections can lead to exhaustion of the pool of socket descriptors available to the DHCP server. Affects ISC DHCP 4.1.0 to 4.1-ESV-R15, 4.2.0 to 4.2.8, 4.3.0 to 4.3.6. Older versions may also be affected but are well beyond their end-of-life (EOL). Releases prior to 4.1.0 have not been tested.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-4133-1 | isc-dhcp security update |
Ubuntu USN |
USN-3586-1 | DHCP vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
The recommended remedy is to disallow access to the OMAPI control port from unauthorized clients (in accordance with best practices for server operation).
References
History
No history.
Status: PUBLISHED
Assigner: isc
Published:
Updated: 2024-09-16T22:46:13.879Z
Reserved: 2016-12-02T00:00:00
Link: CVE-2017-3144
No data.
Status : Modified
Published: 2019-01-16T20:29:00.627
Modified: 2024-11-21T03:24:55.567
Link: CVE-2017-3144
OpenCVE Enrichment
No data.
Debian DSA
Ubuntu USN