Rapid7

vulnerability

CentOS Linux: CVE-2017-3144: Moderate: dhcp security update (CESA-2018:0158)

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Jan 25, 2018
Added
Jan 27, 2018
Modified
May 25, 2023

Description

A vulnerability stemming from failure to properly clean up closed OMAPI connections can lead to exhaustion of the pool of socket descriptors available to the DHCP server. Affects ISC DHCP 4.1.0 to 4.1-ESV-R15, 4.2.0 to 4.2.8, 4.3.0 to 4.3.6. Older versions may also be affected but are well beyond their end-of-life (EOL). Releases prior to 4.1.0 have not been tested.

Solutions

centos-upgrade-dhclientcentos-upgrade-dhcpcentos-upgrade-dhcp-commoncentos-upgrade-dhcp-debuginfocentos-upgrade-dhcp-develcentos-upgrade-dhcp-libs
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.