CVE-2010-2156
60Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 76%
from disclosure to weapon26 days
Published on NVDJun 7
1st PoC+26d
exploitation probability
76%top 1% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
ISC DHCP 4.1 before 4.1.1-P1 and 4.0 before 4.0.2-P1 allows remote attackers to cause a denial of service (server exit) via a zero-length client ID.
Affected products
n/a · n/apublic PoCs found — 2
exploitdbwww.exploit-db.com/exploits/14185unverifiedcve_referencewww.exploit-db.com/exploits/14185unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://ftp.isc.org/isc/dhcp/dhcp-4.0.2-P1-RELNOTEShttp://ftp.isc.org/isc/dhcp/dhcp-4.1.1-P1-RELNOTEShttp://lists.fedoraproject.org/pipermail/package-announce/2010-June/042843.htmlhttp://secunia.com/advisories/40116https://exchange.xforce.ibmcloud.com/vulnerabilities/59222http://www.exploit-db.com/exploits/14185http://www.mandriva.com/security/advisories?name=MDVSA-2010:114http://www.securityfocus.com/bid/40775http://www.securitytracker.com/id?1024093