suse · CVE-2016-2774

Quick triage

Priority: medium 公開: 2021-05-30 13:39:54 UTC Updated: 2026-04-18 17:58:13 UTC

参照: Official suse advisory, NVD, CVE.org · CVE 詳細

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2016-2774 severity moderate: SUSE including 36 source package names (dhclient-4.2.5-47.el7, dhcp-3.1.3.ESV-0.22.1, …), 125 product×package rows across 45 product lines (Image SLES12-SP5-Azure-BYOS, Image SLES12-SP5-Azure-Basic-On-Demand, … (45 product lines)): Fixed 125.

Description:

ISC DHCP 4.1.x before 4.1-ESV-R13 and 4.2.x and 4.3.x before 4.3.4 does not restrict the number of concurrent TCP sessions, which allows remote attackers to cause a denial of service (INSIST assertion failure or request-processing outage) by establishing many sessions.

cvelogic Threat Intelligence