--------------------------------------------------------------------------------Fedora Update Notification
FEDORA-2018-36058ed9f2
2018-05-15 15:28:50.173877
--------------------------------------------------------------------------------Name        : dhcp
Product     : Fedora 27
Version     : 4.3.6
Release     : 10.fc27
URL         : Summary     : Dynamic host configuration protocol software
Description :
DHCP (Dynamic Host Configuration Protocol)

--------------------------------------------------------------------------------Update Information:

fix for CVE-2018-1111
--------------------------------------------------------------------------------ChangeLog:

* Tue May 15 2018 Pavel Zhukov  - 12:4.3.6-10
- Fix for CVE-2018-1111
* Thu Mar  1 2018 Pavel Zhukov  - 12:4.3.6-9
- Fix CVE-2018-5732 CVE-2018-5733 (#1550246)
* Wed Jan 10 2018 Pavel Zhukov  - 12:4.3.6-8
- Use released version
* Fri Dec  8 2017 Pavel Zhukov  - 12:4.3.6-7
- Fix omapi SD leak (#1523547)
* Wed Sep 20 2017 Pavel Zhukov  - 12:4.3.6-6
- Do now override hostname variable in script
--------------------------------------------------------------------------------References:

  [ 1 ] Bug #1578362 - CVE-2018-1111 dhcp: Command injection vulnerability in the DHCP client NetworkManager integration script [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=1578362
--------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2018-36058ed9f2' at the command
line. For more information, refer to the dnf documentation available at
https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/security/
--------------------------------------------------------------------------------
_______________________________________________
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora 27: dhcp Security Update 2018-36058ed9f2 2018-36058ed9f2

May 15, 2018
fix for CVE-2018-1111

Summary

DHCP (Dynamic Host Configuration Protocol)

fix for CVE-2018-1111

* Tue May 15 2018 Pavel Zhukov - 12:4.3.6-10

- Fix for CVE-2018-1111

* Thu Mar 1 2018 Pavel Zhukov - 12:4.3.6-9

- Fix CVE-2018-5732 CVE-2018-5733 (#1550246)

* Wed Jan 10 2018 Pavel Zhukov - 12:4.3.6-8

- Use released version

* Fri Dec 8 2017 Pavel Zhukov - 12:4.3.6-7

- Fix omapi SD leak (#1523547)

* Wed Sep 20 2017 Pavel Zhukov - 12:4.3.6-6

- Do now override hostname variable in script

[ 1 ] Bug #1578362 - CVE-2018-1111 dhcp: Command injection vulnerability in the DHCP client NetworkManager integration script [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=1578362

su -c 'dnf upgrade --advisory FEDORA-2018-36058ed9f2' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

FEDORA-2018-36058ed9f2 2018-05-15 15:28:50.173877 Product : Fedora 27 Version : 4.3.6 Release : 10.fc27 URL : Summary : Dynamic host configuration protocol software Description : DHCP (Dynamic Host Configuration Protocol) fix for CVE-2018-1111 * Tue May 15 2018 Pavel Zhukov - 12:4.3.6-10 - Fix for CVE-2018-1111 * Thu Mar 1 2018 Pavel Zhukov - 12:4.3.6-9 - Fix CVE-2018-5732 CVE-2018-5733 (#1550246) * Wed Jan 10 2018 Pavel Zhukov - 12:4.3.6-8 - Use released version * Fri Dec 8 2017 Pavel Zhukov - 12:4.3.6-7 - Fix omapi SD leak (#1523547) * Wed Sep 20 2017 Pavel Zhukov - 12:4.3.6-6 - Do now override hostname variable in script [ 1 ] Bug #1578362 - CVE-2018-1111 dhcp: Command injection vulnerability in the DHCP client NetworkManager integration script [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1578362 su -c 'dnf upgrade --advisory FEDORA-2018-36058ed9f2' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ package-announce mailing list -- package-announce@lists.fedoraproject.org To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Change Log

References

Update Instructions

Severity
Product : Fedora 27
Version : 4.3.6
Release : 10.fc27
URL : Summary : Dynamic host configuration protocol software

Related News