PatchSiren

Dhcpcd Project CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Dhcpcd Project CVE published 2017-02-07

CVE-2016-1504

CVE-2016-1504 is a high-severity denial-of-service issue in dhcpcd. According to NVD, remote attackers could trigger an invalid read and crash through vectors related to option length. NVD rates the issue CVSS 3.0 7.5 (HIGH) and lists impacted dhcpcd versions through 6.9.4, while the description states the issue was fixed before 6.10.0.