Buffer Overflow Vulnerability in ISC DHCP Daemon Affecting Multiple Versions
CVE-2004-0461

Currently unrated

What is CVE-2004-0461?

The ISC DHCP daemon (DHCPD) has a vulnerability that arises in environments lacking the vsnprintf function. In such cases, the daemon utilizes a C include file where vsnprintf is replaced by the less secure vsprintf function. This implementation flaw can potentially lead to buffer overflows, allowing attackers to cause a denial of service by crashing the server, and it may also provide an avenue for executing arbitrary code on the affected system.

References

EPSS Score

16% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.