CVE-2015-8461, a DHCP security vulnerability, was announced today.

Apu apu at spfld.com
Tue Jan 12 23:13:48 UTC 2016


Michael,

The advisory includes this text regarding workarounds

None likely, but in some environments following the advice from
https://kb.isc.org/article/AA-00573/31/Securing-Your-Network-From-DHCP-Risks.html
can substantially reduce the risk by limiting the exposure of a DHCP
server to "controlled" networks and clients.

however the link returns an error requesting a username and password.

Is that article available publicly?



-- 
Apu




More information about the dhcp-users mailing list