DHCP can add routes to a client’s routing table via the classless static route option (121). VPN-based security solutions that rely on routes to redirect traffic can be forced to leak traffic over the physical interface. An attacker on the same local network can read, disrupt, or possibly modify network traffic that was expected to be protected by the VPN.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: cisa-cg
Published: 2024-05-06T18:31:21.217Z
Updated: 2024-07-01T15:04:50.790Z
Reserved: 2024-04-11T17:24:22.637Z
Link: CVE-2024-3661
JSON object: View
NVD Information
Status : Awaiting Analysis
Published: 2024-05-06T19:15:11.027
Modified: 2024-05-08T22:15:49.103
Link: CVE-2024-3661
JSON object: View
Redhat Information
No data.