CVE-2022-2928

In ISC DHCP 4.4.0 -> 4.4.3, ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16-P1, when the function option_code_hash_lookup() is called from add_option(), it increases the option's refcount field. However, there is not a corresponding call to option_dereference() to decrement the refcount field. The function add_option() is only used in server responses to lease query packets. Each lease query response calls this function for several options, so eventually, the reference counters could overflow and cause the server to abort.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:isc:dhcp:*:*:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r10:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r10_b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r10_rc1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r10b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r10rc1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r11:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r11_b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r11_rc1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r11_rc2:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r11b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r11rc1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r11rc2:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r12:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r12-p1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r12_b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r12_p1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r12b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r13:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r13_b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r13b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r14:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r14_b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r14b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r15:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r15-p1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r15_b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r16:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r16-p1:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*

History

07 Nov 2023, 03:47

Type Values Removed Values Added
References
  • {'url': 'https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QQXYCIWUDILRCNBAIMVFCSGXBRKEPB4K/', 'name': 'FEDORA-2022-f5a45757df', 'tags': ['Mailing List', 'Third Party Advisory'], 'refsource': 'FEDORA'}
  • {'url': 'https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/T6IBFH4MRRNJQVWEKILQ6I6CXWW766FX/', 'name': 'FEDORA-2022-9ca9a94e28', 'tags': ['Mailing List', 'Third Party Advisory'], 'refsource': 'FEDORA'}
  • {'url': 'https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2SARIK7KZ7MGQIWDRWZFAOSQSPXY4GOU/', 'name': 'FEDORA-2022-c4f274a54f', 'tags': ['Mailing List', 'Third Party Advisory'], 'refsource': 'FEDORA'}
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/T6IBFH4MRRNJQVWEKILQ6I6CXWW766FX/ -
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2SARIK7KZ7MGQIWDRWZFAOSQSPXY4GOU/ -
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/QQXYCIWUDILRCNBAIMVFCSGXBRKEPB4K/ -

03 May 2023, 12:16

Type Values Removed Values Added
References
  • (GENTOO) https://security.gentoo.org/glsa/202305-22 -

28 Nov 2022, 18:09

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.5
v2 : unknown
v3 : 6.5

21 Nov 2022, 19:34

Type Values Removed Values Added
First Time Fedoraproject
Fedoraproject fedora
References (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2SARIK7KZ7MGQIWDRWZFAOSQSPXY4GOU/ - (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2SARIK7KZ7MGQIWDRWZFAOSQSPXY4GOU/ - Mailing List, Third Party Advisory
References (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QQXYCIWUDILRCNBAIMVFCSGXBRKEPB4K/ - (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QQXYCIWUDILRCNBAIMVFCSGXBRKEPB4K/ - Mailing List, Third Party Advisory
References (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/T6IBFH4MRRNJQVWEKILQ6I6CXWW766FX/ - (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/T6IBFH4MRRNJQVWEKILQ6I6CXWW766FX/ - Mailing List, Third Party Advisory
CPE cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*

26 Oct 2022, 20:15

Type Values Removed Values Added
References
  • (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2SARIK7KZ7MGQIWDRWZFAOSQSPXY4GOU/ -

18 Oct 2022, 01:15

Type Values Removed Values Added
References
  • (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/T6IBFH4MRRNJQVWEKILQ6I6CXWW766FX/ -

14 Oct 2022, 15:15

Type Values Removed Values Added
References
  • (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QQXYCIWUDILRCNBAIMVFCSGXBRKEPB4K/ -

13 Oct 2022, 14:42

Type Values Removed Values Added
CWE CWE-476
First Time Debian debian Linux
Isc dhcp
Debian
Isc
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
References (CONFIRM) https://kb.isc.org/docs/cve-2022-2928 - (CONFIRM) https://kb.isc.org/docs/cve-2022-2928 - Vendor Advisory
References (MLIST) https://lists.debian.org/debian-lts-announce/2022/10/msg00015.html - (MLIST) https://lists.debian.org/debian-lts-announce/2022/10/msg00015.html - Mailing List, Third Party Advisory
CPE cpe:2.3:a:isc:dhcp:4.1-esv:r15-p1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r12:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r12_p1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r14_b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r11_rc2:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r15_b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r11rc1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r11b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r10:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r12-p1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r16-p1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r12_b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r11_rc1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r14:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r15:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r11_b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r13_b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:*:*:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r14b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r10b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r10rc1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r12b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r13b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r11rc2:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r10_rc1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r13:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r16:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r10_b1:*:*:*:*:*:*
cpe:2.3:a:isc:dhcp:4.1-esv:r11:*:*:*:*:*:*

11 Oct 2022, 16:15

Type Values Removed Values Added
References
  • (MLIST) https://lists.debian.org/debian-lts-announce/2022/10/msg00015.html -

11 Oct 2022, 05:15

Type Values Removed Values Added
References
  • {'url': 'https://www.cve.org/CVERecord?id=CVE-2022-2928', 'name': 'https://www.cve.org/CVERecord?id=CVE-2022-2928', 'tags': [], 'refsource': 'MISC'}

11 Oct 2022, 04:15

Type Values Removed Values Added
References
  • (MISC) https://www.cve.org/CVERecord?id=CVE-2022-2928 -

07 Oct 2022, 05:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-10-07 05:15

Updated : 2023-12-10 14:35


NVD link : CVE-2022-2928

Mitre link : CVE-2022-2928

CVE.ORG link : CVE-2022-2928


JSON object : View

Products Affected

debian

  • debian_linux

isc

  • dhcp

fedoraproject

  • fedora
CWE
CWE-476

NULL Pointer Dereference