dhcpcd-discuss

dhcpcd-7.0.3 released

Roy Marples

Fri Apr 06 11:43:57 2018

A very important update:

  *  udev: uses the logerr framework
  *  BSD: fix segfault when IPv6 addresses exist and carrier changes
  *  dhcp6: fix a null termination overflow on status messages
  *  options: static routes can be setup in global context again
  *  routes: dhcpcd added host routes are now reported correctly

dhcpcd-7.0.0, 7.0.1 and 7.0.2 are vulnerable to the DHCP6 issue where the message is copied from the DHCP6 option into a buffer, but is NULL terminated beyond the size of the buffer.
dhcpcd-6 is not vulnerable.

ftp://roy.marples.name/pub/dhcpcd/dhcpcd-7.0.3.tar.xz
ftp://roy.marples.name/pub/dhcpcd/dhcpcd-7.0.3.tar.xz.distinfo.asc
https://roy.marples.name/downloads/dhcpcd/dhcpcd-7.0.3.tar.xz
https://roy.marples.name/downloads/dhcpcd/dhcpcd-7.0.3.tar.xz.distinfo.asc

Roy

Archive administrator: postmaster@marples.name