DHCP can add routes to a client’s routing table via the classless static route option (121). VPN-based security solutions that rely on routes to redirect traffic can be forced to leak traffic over the physical interface. An attacker on the same local network can read, disrupt, or possibly modify network traffic that was expected to be protected by the VPN.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: cisa-cg

Published: 2024-05-06T18:31:21.217Z

Updated: 2024-07-01T15:04:50.790Z

Reserved: 2024-04-11T17:24:22.637Z


Link: CVE-2024-3661

JSON object: View

cve-icon NVD Information

Status : Awaiting Analysis

Published: 2024-05-06T19:15:11.027

Modified: 2024-05-08T22:15:49.103


Link: CVE-2024-3661

JSON object: View

cve-icon Redhat Information

No data.