Vulnerability Name:

CVE-2000-0585 (CCN-4927)

Assigned:2000-06-23
Published:2000-06-23
Updated:2018-05-03
Summary:ISC DHCP client program dhclient allows remote attackers to execute arbitrary commands via shell metacharacters.
CVSS v3 Severity:10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
10.0 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-Other
Vulnerability Consequences:Gain Access
References:Source: CCN
Type: FreeBSD Security Advisory FreeBSD-SA-00:34
dhclient vulnerable to malicious dhcp server

Source: FREEBSD
Type: UNKNOWN
FreeBSD-SA-00:34

Source: NETBSD
Type: UNKNOWN
NetBSD-SA2000-008

Source: BUGTRAQ
Type: Patch, Vendor Advisory
20000624 Possible root exploit in ISC DHCP client.

Source: CCN
Type: BugTraq Mailing List, Sat Jun 24 2000 - 04:28:58 CDT
Possible root exploit in ISC DHCP client.

Source: BUGTRAQ
Type: UNKNOWN
20000702 [Security Announce] dhcp update

Source: CCN
Type: BugTraq Mailing List, Sun Jul 02 2000 - 10:13:57 CDT
[Security Announce] dhcp update

Source: CCN
Type: NetBSD Security Advisory 2000-008
dhclient vulnerability

Source: MITRE
Type: CNA
CVE-2000-0585

Source: CCN
Type: TurboLinux Security Announcement TLSA2001009
dhcp

Source: CCN
Type: CIAC Information Bulletin K-067
FreeBSD - dhclient vulnerable to malicious dhcp server

Source: DEBIAN
Type: UNKNOWN
20000628 dhcp client: remote root exploit in dhcp client

Source: DEBIAN
Type: Debian Security Advisory 20000728
dhcp client: remote root exploit in dhcp client

Source: CCN
Type: Internet Software Consortium (ISC) Web site
Internet Software Consortium - DHCP

Source: SUSE
Type: UNKNOWN
20000711 Security Hole in dhclient < 2.0

Source: BID
Type: UNKNOWN
1388

Source: CCN
Type: BID-1388
ISC DHCP Client Remote Buffer Overflow Vulnerability

Source: CCN
Type: SuSE Security Announcement #56
dhclient < 2.0

Source: CCN
Type: MandrakeSoft Security Advisory MDKSA-2000:022-1
dhcp

Source: XF
Type: UNKNOWN
openbsd-isc-dhcp(4772)

Source: XF
Type: UNKNOWN
dhclient-remote-root-compromise(4927)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:isc:dhcp_client:2.0:*:*:*:*:*:*:*
  • OR cpe:/a:isc:dhcp_client:3.0b1:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:isc:dhcp_client:2.0:*:*:*:*:*:*:*
  • OR cpe:/a:isc:dhcp_client:3.0b1:*:*:*:*:*:*:*
  • AND
  • cpe:/o:netbsd:netbsd:1.3:*:*:*:*:*:*:*
  • OR cpe:/o:netbsd:netbsd:1.3.1:*:*:*:*:*:*:*
  • OR cpe:/o:netbsd:netbsd:1.3.3:*:*:*:*:*:*:*
  • OR cpe:/o:netbsd:netbsd:1.3.2:*:*:*:*:*:*:*
  • OR cpe:/o:freebsd:freebsd:3.2:*:*:*:*:*:*:*
  • OR cpe:/o:suse:suse_linux:6.2:*:*:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:2.1:*:*:*:*:*:*:*
  • OR cpe:/o:suse:suse_linux:6.3:*:*:*:*:*:*:*
  • OR cpe:/o:suse:suse_linux:6.4:*:*:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:2.2:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:7.0:*:*:*:*:*:*:*
  • OR cpe:/o:suse:suse_linux:6.1:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:7.1:*:*:*:*:*:*:*
  • OR cpe:/o:netbsd:netbsd:1.4:*:*:*:*:*:*:*
  • OR cpe:/o:turbolinux:turbolinux:6.0.5:*:*:*:*:*:*:*
  • OR cpe:/o:netbsd:netbsd:1.0:*:*:*:*:*:*:*
  • OR cpe:/o:netbsd:netbsd:1.2:*:*:*:*:*:*:*
  • OR cpe:/o:netbsd:netbsd:1.1:*:*:*:*:*:*:*
  • OR cpe:/o:netbsd:netbsd:1.2.1:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    isc dhcp client 2.0
    isc dhcp client 3.0b1
    isc dhcp client 2.0
    isc dhcp client 3.0b1
    netbsd netbsd 1.3
    netbsd netbsd 1.3.1
    netbsd netbsd 1.3.3
    netbsd netbsd 1.3.2
    freebsd freebsd 3.2
    suse suse linux 6.2
    debian debian linux 2.1
    suse suse linux 6.3
    suse suse linux 6.4
    debian debian linux 2.2
    mandrakesoft mandrake linux 7.0
    suse suse linux 6.1
    mandrakesoft mandrake linux 7.1
    netbsd netbsd 1.4
    turbolinux turbolinux 6.0.5
    netbsd netbsd 1.0
    netbsd netbsd 1.2
    netbsd netbsd 1.1
    netbsd netbsd 1.2.1