[ubuntu/maverick-security] dhcpcd 1:3.2.3-7ubuntu0.10.10.1 (Accepted)
Zubin Mithra
zubin.mithra at gmail.com
Wed Feb 15 16:04:17 UTC 2012
dhcpcd (1:3.2.3-7ubuntu0.10.10.1) maverick-security; urgency=high
* SECURITY UPDATE: dhcpcd before 5.2.12 allows remote attackers to
execute arbitrary commands via shell metacharacters in a hostname
obtained from a DHCP message. (LP: #931036)
- https://build.opensuse.org/package/view_file?file=dhcpcd-3.2.3-option-checks.diff&package=dhcpcd&project=network%3Adhcp&rev=52442e5c1d803d7c1818a920a0bae7f1
- above linked patch(without the additional support for NETBIOS type
messages) has been added.
- CVE-2011-0996
Date: Mon, 13 Feb 2012 14:27:54 +0530
Changed-By: Zubin Mithra <zubin.mithra at gmail.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/maverick/+source/dhcpcd/1:3.2.3-7ubuntu0.10.10.1
-------------- next part --------------
Format: 1.8
Date: Mon, 13 Feb 2012 14:27:54 +0530
Source: dhcpcd
Binary: dhcpcd
Architecture: source
Version: 1:3.2.3-7ubuntu0.10.10.1
Distribution: maverick-security
Urgency: high
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Zubin Mithra <zubin.mithra at gmail.com>
Description:
dhcpcd - DHCP client for automatically configuring IPv4 networking
Launchpad-Bugs-Fixed: 931036
Changes:
dhcpcd (1:3.2.3-7ubuntu0.10.10.1) maverick-security; urgency=high
.
* SECURITY UPDATE: dhcpcd before 5.2.12 allows remote attackers to
execute arbitrary commands via shell metacharacters in a hostname
obtained from a DHCP message. (LP: #931036)
- https://build.opensuse.org/package/view_file?file=dhcpcd-3.2.3-option-checks.diff&package=dhcpcd&project=network%3Adhcp&rev=52442e5c1d803d7c1818a920a0bae7f1
- above linked patch(without the additional support for NETBIOS type
messages) has been added.
- CVE-2011-0996
Checksums-Sha1:
55842862d886c4b4aae5010ec9eeae09ebb2bb4f 1724 dhcpcd_3.2.3-7ubuntu0.10.10.1.dsc
fa32844a91173e50ebfa091f8897bd4c6b6a9959 19544 dhcpcd_3.2.3-7ubuntu0.10.10.1.diff.gz
Checksums-Sha256:
afe65f1abb0cdce265588b2ee7476f3dafd6da73aa893eaebfd156884fc52885 1724 dhcpcd_3.2.3-7ubuntu0.10.10.1.dsc
1c93be55c7b8b5ea3956417858673b28af457b84d3beb87f7ab50741d1581246 19544 dhcpcd_3.2.3-7ubuntu0.10.10.1.diff.gz
Files:
d0552fe17463c517f9f4d96965d40fe7 1724 net optional dhcpcd_3.2.3-7ubuntu0.10.10.1.dsc
9d1ca2ee080807d13991a09c8c5d00e5 19544 net optional dhcpcd_3.2.3-7ubuntu0.10.10.1.diff.gz
Original-Maintainer: Simon Kelley <simon at thekelleys.org.uk>
More information about the Maverick-changes
mailing list