RULE(RULE ID:2005097)

Rule General Information
Release Date: 2012-02-21
Rule Name: ISC DHCP dhclient script_write_params Stack buffer overflow Vulnerability (CVE-2009-0692)
Severity:
CVE ID:
Rule Protection Details
Description: There exists a stack buffer overflow vulnerability in ISC DHCP dhclient. The vulnerability is due to a boundary error in parsing specially crafted subnet-mask option in DHCP responses sent from a server. Attackers in a network can exploit this vulnerability by running a malicious DHCP server, or by injecting malicious content in responses sent from an authentic server.
Impact: Remote code execution
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: CVE-2009-0692
Solutions
Update vendor's patch.