Comment 1 for bug 720729

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package isc-dhcp - 4.1.1-P1-15ubuntu3

---------------
isc-dhcp (4.1.1-P1-15ubuntu3) natty; urgency=low

  * SECURITY UPDATE: denial of service via processing of message from an address
    that was previously declined, causing assert failure. (LP: #720729)
    - debian/patches/CVE-2011-0413.dpatch: Reclaim the previously abandoned
      address in isc-dhcp/server/mdb6.c, by retagging the lease and adding
      a sane expiration value. Based on changes between upstream releases
      4.1.2 and 4.1.2-P1
    - CVE-2011-0413
 -- Dave Walker (Daviey) <email address hidden> Thu, 17 Feb 2011 16:24:57 +0000