CVE-2006-3122
Title: Isc Dhcpd Denial of Service (DoS)
Denial of Service (DoS)
Proof Of Concept
No public PoC currently indexed for CVE-2006-3122.
CWE Category
CWE-399
Published Date
Aug 09, 2006
Modified Date
Apr 03, 2025
Exploit Status
Not Found
Score
5.0
CVSS v2.0
Exploit Probability (EPSS)
9.78%
Vulnerability Summary
CVE-2006-3122: The supersede_lease function in memory.c in ISC DHCP (dhcpd) server 2.0pl5 allows remote attackers to cause a denial of service (application crash) via a DHCPDISCOVER packet with a 32 byte client-identifier, which causes the packet to be interpreted as a corrupt uid and causes the server to exit with "corrupt lease uid."
Impacted Vendors
Reference Links
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=380273
http://secunia.com/advisories/21345
http://secunia.com/advisories/21363
http://secunia.com/advisories/21655
http://securitytracker.com/id?1016755
http://www.debian.org/security/2006/dsa-1143
http://www.openbsd.org/errata.html#dhcpd
http://www.securityfocus.com/bid/19348
http://www.vupen.com/english/advisories/2006/3158
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=380273
http://secunia.com/advisories/21345
http://secunia.com/advisories/21363
http://secunia.com/advisories/21655
http://securitytracker.com/id?1016755
http://www.debian.org/security/2006/dsa-1143
http://www.openbsd.org/errata.html#dhcpd
http://www.securityfocus.com/bid/19348
http://www.vupen.com/english/advisories/2006/3158
CVSS v2.0
Source Entity
[email protected]
Severity
MEDIUM
5.0
Access Vector
N/A
Authentication
N/A
RAW VECTOR
AV:N/AC:L/Au:N/C:N/I:N/A:P
Associated Attack Patterns (CAPEC)
Total: PatternsNo specific attack patterns mapped.
Likelihood
Severity
Page /
CVE-2006-3122 Exploits & PoCs (Proof Of Concept)
No public PoCs found in our database for this CVE.
MODIFIED
Vulnerability data or affected products updated.
PUBLISHED
Vulnerability first announced in NVD.
Attack Vector Matrix
Access Vector
N/A
Complexity
N/A
Privileges
N/A
Interaction
NONE
CVSS Vector String
AV:N/AC:L/Au:N/C:N/I:N/A:P
Affected Stack
No specific products linked.