Vulnerability Name: | CVE-2011-0996 (CCN-66641) | ||||||||||||
Assigned: | 2011-04-06 | ||||||||||||
Published: | 2011-04-06 | ||||||||||||
Updated: | 2017-08-17 | ||||||||||||
Summary: | dhcpcd before 5.2.12 allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a DHCP message. | ||||||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||
CVSS v2 Severity: | 6.8 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P) 5.0 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
5.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||||||
Vulnerability Type: | CWE-20 | ||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2011-0996 Source: CCN Type: dhcpcd-discuss Mailing List, Wed 06 Apr 2011 - 10:01:37 BST dhcpcd does not strip or escape shell meta characters Source: CCN Type: Roy Marples dhcpcd does not strip or escape shell meta characters Source: MLIST Type: UNKNOWN [dhcpcd-discuss] 20110406 [CVE-2011-996] dhcpcd does not strip or escape shell meta characters Source: CONFIRM Type: Patch http://roy.marples.name/projects/dhcpcd/changeset/c317b39786ac6c3a939dc711db7c78cf099859fd Source: CONFIRM Type: UNKNOWN http://roy.marples.name/projects/dhcpcd/timeline Source: CCN Type: SA44070 dhcpcd Response Processing Input Sanitation Vulnerability Source: SECUNIA Type: Vendor Advisory 44070 Source: GENTOO Type: UNKNOWN GLSA-201301-04 Source: CCN Type: OSVDB ID: 74997 dhcpcd DHCP Server hostname Response Parsing Shell Metacharacter Arbitrary Command Execution Source: BID Type: UNKNOWN 47272 Source: CCN Type: BID-47272 dhcpcd 'hostname' Remote Arbitrary Shell Command Injection Vulnerability Source: CCN Type: Novell Bugzilla ID 675052 dhcp-client / dhcpcd: remote/local root hole via rogue hostname Source: CONFIRM Type: UNKNOWN https://bugzilla.novell.com/show_bug.cgi?id=675052 Source: XF Type: UNKNOWN dhcpcd-response-command-execution(66641) Source: XF Type: UNKNOWN dhcpcd-response-command-execution(66641) Source: SUSE Type: SUSE-SR:2011:007 SUSE Security Summary Report Source: SUSE Type: SUSE-SR:2011:008 SUSE Security Summary Report | ||||||||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||||||||
Oval Definitions | |||||||||||||
| |||||||||||||
BACK |