From: Thomas Markwalder Date: Tue, 13 Aug 2019 18:17:10 +0000 (-0400) Subject: [#730,!2-p] Updated ChangeLog entry X-Git-Tag: Kea-1.6.0~41^2~20 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=d1395c7a9ad6019a86bdfd1b7dfbf4b65e045213;p=thirdparty%2Fkea.git [#730,!2-p] Updated ChangeLog entry --- diff --git a/ChangeLog b/ChangeLog index 4471facdb4..c9c6ab749d 100644 --- a/ChangeLog +++ b/ChangeLog @@ -1,8 +1,9 @@ 1652. [security] tmark - Replaced asserts with exception throws to catch parser errors - that can occur handling malformed hostname name and FQDN options. + Prevent the DHCP servers from asserting when malformed + hostname or FQDN options are received. Now the servers will + drop the DHCP packets containing the malformed options. CVE:2019-6473 - (Gitlab #730,!2-p git TBD) + (Gitlab #730,private!2 git a2a98c421bb400a81218bd28d6a6f62accd31b1f) 1651. [security] tmark Added logic to kea-dhcp6 to catch values for client or