A vulnerability stemming from failure to properly clean up closed OMAPI connections can lead to exhaustion of the pool of socket descriptors available to the DHCP server. Affects ISC DHCP 4.1.0 to 4.1-ESV-R15, 4.2.0 to 4.2.8, 4.3.0 to 4.3.6. Older versions may also be affected but are well beyond their end-of-life (EOL). Releases prior to 4.1.0 have not been tested.
References
Link Resource
http://www.securityfocus.com/bid/102726 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1040194 Third Party Advisory VDB Entry
https://access.redhat.com/errata/RHSA-2018:0158 Third Party Advisory
https://kb.isc.org/docs/aa-01541 Vendor Advisory
https://usn.ubuntu.com/3586-1/ Third Party Advisory
https://www.debian.org/security/2018/dsa-4133 Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: isc

Published: 2018-01-16T00:00:00

Updated: 2019-01-17T10:57:01

Reserved: 2016-12-02T00:00:00


Link: CVE-2017-3144

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-01-16T20:29:00.627

Modified: 2020-01-09T21:07:42.350


Link: CVE-2017-3144

JSON object: View

cve-icon Redhat Information

No data.

CWE