Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2011-0997

dhclient in ISC DHCP 3.0.x through 4.2.x before 4.2.1-P1, 3.1-ESV before 3.1-ESV-R1, and 4.1-ESV before 4.1-ESV-R2 allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a DHCP message, as demonstrated by a hostname that is provided to dhclient-script.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.72
EPSS Ranking 98.6%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2011-0997
  • Isc » Dhcp » Version: 3.0
    cpe:2.3:a:isc:dhcp:3.0
  • Isc » Dhcp » Version: 3.0.1
    cpe:2.3:a:isc:dhcp:3.0.1
  • Isc » Dhcp » Version: 3.0.2
    cpe:2.3:a:isc:dhcp:3.0.2
  • Isc » Dhcp » Version: 3.0.3
    cpe:2.3:a:isc:dhcp:3.0.3
  • Isc » Dhcp » Version: 3.0.4
    cpe:2.3:a:isc:dhcp:3.0.4
  • Isc » Dhcp » Version: 3.0.5
    cpe:2.3:a:isc:dhcp:3.0.5
  • Isc » Dhcp » Version: 3.0.6
    cpe:2.3:a:isc:dhcp:3.0.6
  • Isc » Dhcp » Version: 3.1-esv
    cpe:2.3:a:isc:dhcp:3.1-esv
  • Isc » Dhcp » Version: 3.1.0
    cpe:2.3:a:isc:dhcp:3.1.0
  • Isc » Dhcp » Version: 3.1.1
    cpe:2.3:a:isc:dhcp:3.1.1
  • Isc » Dhcp » Version: 3.1.2
    cpe:2.3:a:isc:dhcp:3.1.2
  • Isc » Dhcp » Version: 3.1.3
    cpe:2.3:a:isc:dhcp:3.1.3
  • Isc » Dhcp » Version: 4.1-esv
    cpe:2.3:a:isc:dhcp:4.1-esv
  • Isc » Dhcp » Version: 4.2.0
    cpe:2.3:a:isc:dhcp:4.2.0
  • Isc » Dhcp » Version: 4.2.1
    cpe:2.3:a:isc:dhcp:4.2.1
  • Canonical » Ubuntu Linux » Version: 10.04
    cpe:2.3:o:canonical:ubuntu_linux:10.04
  • Canonical » Ubuntu Linux » Version: 10.10
    cpe:2.3:o:canonical:ubuntu_linux:10.10
  • Canonical » Ubuntu Linux » Version: 6.06
    cpe:2.3:o:canonical:ubuntu_linux:6.06
  • Canonical » Ubuntu Linux » Version: 8.04
    cpe:2.3:o:canonical:ubuntu_linux:8.04
  • Canonical » Ubuntu Linux » Version: 9.10
    cpe:2.3:o:canonical:ubuntu_linux:9.10
  • Debian » Debian Linux » Version: 5.0
    cpe:2.3:o:debian:debian_linux:5.0
  • Debian » Debian Linux » Version: 6.0
    cpe:2.3:o:debian:debian_linux:6.0
  • Debian » Debian Linux » Version: 7.0
    cpe:2.3:o:debian:debian_linux:7.0


Contact Us

Shodan ® - All rights reserved