dhcpcd-discuss

dhcpcd-6.4.3 released

Roy Marples

Wed Jul 30 15:30:39 2014

Hi List

dhcpcd-6.4.3 has been released with the following changes:

  *  Correct DHCPv6 Prefix Delegation option decoding
  *  Ensure that a given buffer is at least BUFSIZ (for getline compat)
* Poll interfaces on BSD for IFF_RUNNING if link state cannot be obtained
  *  Check for an IA to use in DHCPv6 lease validation
  *  Fix compile on NetBSD-6 (and possibly earlier NetBSDs)
* Warn about exceeding IDGEN_RETRIES when a stable private address cannot be obtained
  *  Fix DHCP option overload handling, thanks to Tobias Stoeckmann

The last point is particularly important because a carefully crafted DHCP message could put dhcpcd into an infinite loop, causing a Denial Of Service attack. This error is in all dhcpcd versions from dhcpcd-4.0.0 upwards, earlier versions are not affected.

Thanks

Roy

Archive administrator: postmaster@marples.name