A vulnerability stemming from failure to properly clean up closed OMAPI connections can lead to exhaustion of the pool of socket descriptors available to the DHCP server. Affects ISC DHCP 4.1.0 to 4.1-ESV-R15, 4.2.0 to 4.2.8, 4.3.0 to 4.3.6. Older versions may also be affected but are well beyond their end-of-life (EOL). Releases prior to 4.1.0 have not been tested.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
DSA-4133-1 | isc-dhcp security update |
![]() |
USN-3586-1 | DHCP vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
The recommended remedy is to disallow access to the OMAPI control port from unauthorized clients (in accordance with best practices for server operation).
References
History
No history.

Status: PUBLISHED
Assigner: isc
Published:
Updated: 2024-09-16T22:46:13.879Z
Reserved: 2016-12-02T00:00:00
Link: CVE-2017-3144

No data.

Status : Modified
Published: 2019-01-16T20:29:00.627
Modified: 2024-11-21T03:24:55.567
Link: CVE-2017-3144


No data.