CVE-2011-0997 is a critical vulnerability affecting ISC DHCP client versions 3.0.x through 4.2.x, 3.1-ESV, and 4.1-ESV, including those used in Canonical and Debian Linux distributions. This flaw allows remote attackers to execute arbitrary commands by injecting shell metacharacters into a hostname received via a DHCP message, which is then processed by the dhclient-script. With a CVSS score of 7.5, it presents a high severity risk due to its network-based attack vector, low attack complexity, and potential for complete compromise of confidentiality, integrity, and availability. While there is no evidence of active exploitation in the wild or publicly available exploit code, the vulnerability has garnered significant community discussion and media coverage, indicating its perceived importance.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
3.0CPE matchmatch criteria | cpe:2.3:a:isc:dhcp:3.0:*:*:*:*:*:*:* | ||
3.0.1CPE matchmatch criteria | cpe:2.3:a:isc:dhcp:3.0.1:-:*:*:*:*:*:* | ||
3.0.1CPE matchmatch criteria | cpe:2.3:a:isc:dhcp:3.0.1:rc1:*:*:*:*:*:* | ||
3.0.1CPE matchmatch criteria | cpe:2.3:a:isc:dhcp:3.0.1:rc10:*:*:*:*:*:* | ||
3.0.1CPE matchmatch criteria | cpe:2.3:a:isc:dhcp:3.0.1:rc11:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.