ISC DHCPD dhcrelay Extraneous Network Packets Vulnerability

It is possible for an attacker to cause dhcrelay to send numerous DHCP packets to a DHCP server. This may result in a denial of DHCP service or cause the DHCP server to behave in an unpredictable manner.

It is possible to exploit this vulnerability by issuing a BOOTP request with a value for the giaddr field. This will result in the dhcrelay service forwarding the packet to the DHCP server in an unending loop.


 

Privacy Statement
Copyright 2010, SecurityFocus