Oval Definition:oval:com.redhat.rhsa:def:20162590
Revision Date:2016-11-03Version:638
Title:RHSA-2016:2590: dhcp security, bug fix, and enhancement update (Moderate)
Description:The Dynamic Host Configuration Protocol (DHCP) is a protocol that allows individual devices on an IP network to get their own network configuration information, including an IP address, a subnet mask, and a broadcast address. The dhcp packages provide a relay agent and ISC DHCP service required to enable and administer DHCP on a network.

Security Fix(es):

  • A resource-consumption flaw was discovered in the DHCP server. dhcpd did not restrict the number of open connections to OMAPI and failover ports. A remote attacker able to establish TCP connections to one of these ports could use this flaw to cause dhcpd to exit unexpectedly, stop responding requests, or exhaust system sockets (denial of service). (CVE-2016-2774)

    Red Hat would like to thank ISC for reporting this issue.

    Additional Changes:

    For detailed information on changes in this release, see the Red Hat Enterprise Linux 7.3 Release Notes linked from the References section.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2016-2774
    RHSA-2016:2590
    RHSA-2016:2590-01
    RHSA-2016:2590-02
    RHSA-2016:2590-02
    Platform(s):Red Hat Enterprise Linux 7
    Red Hat Enterprise Linux 7 (please do not use for >= RHEL-7.5)
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 7 is installed
  • AND
  • dhclient is earlier than 12:4.2.5-47.el7
  • AND dhclient is signed with Red Hat redhatrelease2 key
  • dhcp is earlier than 12:4.2.5-47.el7
  • AND dhcp is signed with Red Hat redhatrelease2 key
  • dhcp-common is earlier than 12:4.2.5-47.el7
  • AND dhcp-common is signed with Red Hat redhatrelease2 key
  • dhcp-devel is earlier than 12:4.2.5-47.el7
  • AND dhcp-devel is signed with Red Hat redhatrelease2 key
  • dhcp-libs is earlier than 12:4.2.5-47.el7
  • AND dhcp-libs is signed with Red Hat redhatrelease2 key
  • Definition Synopsis
  • Release Information
  • Red Hat Enterprise Linux 7 Client is installed
  • OR Red Hat Enterprise Linux 7 Server is installed
  • OR Red Hat Enterprise Linux 7 Workstation is installed
  • OR Red Hat Enterprise Linux 7 ComputeNode is installed
  • AND Package Information
  • dhcp-libs is earlier than 12:4.2.5-47.el7
  • AND dhcp-libs is signed with Red Hat redhatrelease2 key
  • OR
  • dhclient is earlier than 12:4.2.5-47.el7
  • AND dhclient is signed with Red Hat redhatrelease2 key
  • OR
  • dhcp-common is earlier than 12:4.2.5-47.el7
  • AND dhcp-common is signed with Red Hat redhatrelease2 key
  • OR
  • dhcp is earlier than 12:4.2.5-47.el7
  • AND dhcp is signed with Red Hat redhatrelease2 key
  • OR
  • dhcp-devel is earlier than 12:4.2.5-47.el7
  • AND dhcp-devel is signed with Red Hat redhatrelease2 key
  • BACK