From d1395c7a9ad6019a86bdfd1b7dfbf4b65e045213 Mon Sep 17 00:00:00 2001 From: Thomas Markwalder Date: Tue, 13 Aug 2019 14:17:10 -0400 Subject: [PATCH] [#730,!2-p] Updated ChangeLog entry --- ChangeLog | 7 ++++--- 1 file changed, 4 insertions(+), 3 deletions(-) diff --git a/ChangeLog b/ChangeLog index 4471facdb4..c9c6ab749d 100644 --- a/ChangeLog +++ b/ChangeLog @@ -1,8 +1,9 @@ 1652. [security] tmark - Replaced asserts with exception throws to catch parser errors - that can occur handling malformed hostname name and FQDN options. + Prevent the DHCP servers from asserting when malformed + hostname or FQDN options are received. Now the servers will + drop the DHCP packets containing the malformed options. CVE:2019-6473 - (Gitlab #730,!2-p git TBD) + (Gitlab #730,private!2 git a2a98c421bb400a81218bd28d6a6f62accd31b1f) 1651. [security] tmark Added logic to kea-dhcp6 to catch values for client or -- 2.47.2