[Secure-testing-team] Bug#770043: Denial of Service in dhcpd5: CVE-2014-6060

Pierre Schweitzer pierre at reactos.org
Tue Nov 18 14:58:45 UTC 2014


Package: dhcpcd5
Severity: important
Tags: security patch

dhcpd5 is vulnerable to the CVE-2014-6060 which can cause a denial of service:
https://security-tracker.debian.org/tracker/CVE-2014-6060

Please find attached the debdiff & dsc for NMU upload which fixes the
vulnerability in unstable.

-- System Information:
Debian Release: jessie/sid
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 3.16.0-4-amd64 (SMP w/8 CPU cores)
-------------- next part --------------
Format: 3.0 (quilt)
Source: dhcpcd5
Binary: dhcpcd5
Architecture: any
Version: 6.0.5-1.2
Maintainer: Roy Marples <roy at marples.name>
Homepage: http://roy.marples.name/projects/dhcpcd
Standards-Version: 3.9.4.0
Build-Depends: debhelper (>= 9)
Package-List:
 dhcpcd5 deb net optional arch=any
Checksums-Sha1:
 433555ac11669333344d7ec80120f3ccdd0fcae5 110259 dhcpcd5_6.0.5.orig.tar.bz2
 6b0e6b6f52ac26421fc13651e362add431b93b30 3884 dhcpcd5_6.0.5-1.2.debian.tar.xz
Checksums-Sha256:
 191d0bfd7fdfa05a580a4671c0489cd782828251b5ea0b41b6d17f026a36493c 110259 dhcpcd5_6.0.5.orig.tar.bz2
 aeb0154d40edfba10a3c6f8420526995fefcf8749a71f0a203454446dbc2176a 3884 dhcpcd5_6.0.5-1.2.debian.tar.xz
Files:
 a65ed99460a61f42c05f652c2eaafe7c 110259 dhcpcd5_6.0.5.orig.tar.bz2
 4cd653acc4baebfbea4eca217688a433 3884 dhcpcd5_6.0.5-1.2.debian.tar.xz
-------------- next part --------------
A non-text attachment was scrubbed...
Name: dhcpcd5_CVE-2014-6060.diff.gz
Type: application/gzip
Size: 702 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-team/attachments/20141118/768e5615/attachment.bin>


More information about the Secure-testing-team mailing list