dhcpcd-discuss

Re: Remotely exploitable crash in dhcpcd

Roy Marples

Sat Jun 24 13:23:24 2017

Hi Jason

On 23/06/17 21:53, Jason A. Donenfeld wrote:
I found that by sending the same exact DHCP response to two different
DHCP requests on different interfaces, I was able to segfault dhcpcd.
The attached patch fixes the problem, though you might want to
investigate a bit further precisely why this is necessary.

Can you test this patch? This restores the dhcpcd-6, check but should have the same effect.
https://dev.marples.name/D121

I've created a task to address the reason why this check was removed and what needs to be done so all are happy.
https://dev.marples.name/T125

Roy

Follow-Ups:
Re: Remotely exploitable crash in dhcpcdJason A. Donenfeld
References:
Remotely exploitable crash in dhcpcdJason A. Donenfeld
Archive administrator: postmaster@marples.name