Podatność CVE-2023-50432


Publikacja: 2024-04-29   Modyfikacja: 2024-04-30

Opis:
simple-dhcp-server through ec976d2 allows remote attackers to cause a denial of service (daemon crash) by sending a DHCP packet without any option fields, which causes free_packet in dhcp_packet.c to dereference a NULL pointer.

 Referencje:
https://papers.mathyvanhoef.com/esorics2024.pdf

Copyright 2024, cxsecurity.com

 

Back to Top