<br><br>
<div class="gmail_quote">On Wed, Aug 10, 2011 at 8:05 AM, Larissa Shapiro <span dir="ltr"><<a href="mailto:larissas@isc.org">larissas@isc.org</a>></span> wrote:<br>
<blockquote style="BORDER-LEFT: #ccc 1px solid; MARGIN: 0px 0px 0px 0.8ex; PADDING-LEFT: 1ex" class="gmail_quote"><u></u>
<div bgcolor="#ffffff" text="#000000">
<div>
<div></div>
<div class="h5"><br>-----BEGIN PGP SIGNED MESSAGE-----<br>Hash: SHA1<br><br> ISC DHCP 3.1-ESV-R3, 4.1-ESV-R3 and 4.2.2 are now available for<br>download.<br><br>These are maintenance and SECURITY releases of ISC DHCP, and fix one<br>
security related bug as well as adding other functionality and bug fixes.<br><br>The security advisory is at:<br><a href="http://www.isc.org/software/dhcp/advisories/cve-2011-2748" target="_blank">http://www.isc.org/software/dhcp/advisories/cve-2011-2748</a> and will be<br>
in an email immediately following this one.<br><br>Full release notes for each version are available in the ISC Knowledge<br>Base at:<br><br>DHCP 3.1-ESV-R3:<br><a href="https://deepthought.isc.org/index.php?/article/AA-00430/82/" target="_blank">https://deepthought.isc.org/index.php?/article/AA-00430/82/</a><br>
DHCP 4.1-ESV-R3:<br><a href="https://deepthought.isc.org/index.php?/article/AA-00431/82/" target="_blank">https://deepthought.isc.org/index.php?/article/AA-00431/82/</a><br>DHCP 4.2.2: <a href="https://deepthought.isc.org/index.php?/article/AA-00432/82/" target="_blank">https://deepthought.isc.org/index.php?/article/AA-00432/82/</a><br>
<br>For a complete list of changes from any previous<br>release, please consult the RELNOTES file within the source<br>distribution, or on our website.<br><br><br>The releases, and their OpenPGP-signatures are available now from:<br>
<br>DHCP 3.1-ESV-R1:<br><br><a href="http://www.isc.org/software/dhcp/31-esv-r3" target="_blank">http://www.isc.org/software/dhcp/31-esv-r3</a><br><a href="ftp://ftp.isc.org/isc/dhcp/dhcp-3.1-ESV-R3.tar.gz" target="_blank">ftp://ftp.isc.org/isc/dhcp/dhcp-3.1-ESV-R3.tar.gz</a><br>
<a href="ftp://ftp.isc.org/isc/dhcp/dhcp-3.1-ESV-R3.tar.gz" target="_blank">ftp://ftp.isc.org/isc/dhcp/dhcp-3.1-ESV-R3.tar.gz</a> .sha512.asc<br><a href="ftp://ftp.isc.org/isc/dhcp/dhcp-3.1-ESV-R3.tar.gz" target="_blank">ftp://ftp.isc.org/isc/dhcp/dhcp-3.1-ESV-R3.tar.gz</a> .sha256.asc<br>
<a href="ftp://ftp.isc.org/isc/dhcp/dhcp-3.1-ESV-R3.tar" target="_blank">ftp://ftp.isc.org/isc/dhcp/dhcp-3.1-ESV-R3.tar</a> .gz.sha1.asc<br><br>DHCP 4.1-ESV-R2:<br><br><a href="http://www.isc.org/software/dhcp/41-esv-r3" target="_blank">http://www.isc.org/software/dhcp/41-esv-r3</a><br>
<a href="ftp://ftp.isc.org/isc/dhcp/dhcp-4.1-ESV-R3.tar.gz" target="_blank">ftp://ftp.isc.org/isc/dhcp/dhcp-4.1-ESV-R3.tar.gz</a><br><a href="ftp://ftp.isc.org/isc/dhcp/dhcp-4.1-ESV-R3.tar.gz" target="_blank">ftp://ftp.isc.org/isc/dhcp/dhcp-4.1-ESV-R3.tar.gz</a> .sha512.asc<br>
<a href="ftp://ftp.isc.org/isc/dhcp/dhcp-4.1-ESV-R3.tar.gz" target="_blank">ftp://ftp.isc.org/isc/dhcp/dhcp-4.1-ESV-R3.tar.gz</a> .sha256.asc<br><a href="ftp://ftp.isc.org/isc/dhcp/dhcp-4.1-ESV-R3.tar" target="_blank">ftp://ftp.isc.org/isc/dhcp/dhcp-4.1-ESV-R3.tar</a> .gz.sha1.asc<br>
<br>DHCP 4.2.1-P1:<br><br><a href="http://www.isc.org/software/dhcp/422" target="_blank">http://www.isc.org/software/dhcp/422</a><br><a href="ftp://ftp.isc.org/isc/dhcp/dhcp-4.2.2.tar.gz" target="_blank">ftp://ftp.isc.org/isc/dhcp/dhcp-4.2.2.tar.gz</a><br>
<a href="ftp://ftp.isc.org/isc/dhcp/dhcp" target="_blank">ftp://ftp.isc.org/isc/dhcp/dhcp</a>- 4.2.2.tar.gz.sha512.asc<br><a href="ftp://ftp.isc.org/isc/dhcp/dhcp" target="_blank">ftp://ftp.isc.org/isc/dhcp/dhcp</a>- 4.2.2.tar.gz.sha256.asc<br>
<a href="ftp://ftp.isc.org/isc/dhcp/dhcp" target="_blank">ftp://ftp.isc.org/isc/dhcp/dhcp</a>- 4.2.2.tar.gz.sha1.asc<br><br><br>ISC's Release Signing Key can be obtained at:<br><br><a href="http://www.isc.org/about/openpgp/" target="_blank">http://www.isc.org/about/openpgp/</a><br>
<br>Security Fix:<br>Two packets were found that cause a server to halt. The code has<br>been updated to properly process or reject the packets as<br>appropriate. Thanks to David Zych at University of Illinois for<br>
reporting this issue. [ISC-Bugs #24960] One CVE number for each<br>class of packet. CVE-2011-2748 CVE-2011-2749<br><br>Known Issues In This Release:<br>In order to support asynchronous DDNS in 4.2.0 we modified how the<br>
DDNS code interacts with leases. Some of these changes interact badly<br>with configurations that include multiple instances of the same lease<br>and can cause a server to crash. We have included some code to help<br>identify and log these issues and are continuing work on a better fix.<br>
However these are mis-configurations and the only complete fix is to<br>modfiy your configuration file to avoid them. You should verify that<br>any address is in only one range, pool or fixed address statement. For<br>example an IPv6 address should not be in a range for both a temporary<br>
address pool and a non-temporary address pool. While this issue can<br>cause the server to crash, it is not a security issue as it requires a<br>specific type of mis-configuration in the configuration file.<br><br>Support:<br>
Product support information is available<br>on <a href="http://www.isc.org/services/support" target="_blank">http://www.isc.org/services/support</a> for paid support options. Free<br>support is provided by our user community via a mailing list.<br>
Information on all public email lists is available<br>at <a href="https://lists.isc.org/mailman/listinfo" target="_blank">https://lists.isc.org/mailman/listinfo</a>.<br><br>Thank You:<br>Thank you to everyone who assisted us in making this release possible.<br>
If you would like to contribute to ISC to assist us in continuing to<br>make quality open source software, please visit our donations page<br>at <a href="http://www.isc.org/supportisc" target="_blank">http://www.isc.org/supportisc</a>.<br>
<br>More Information:<br>For more information on how to install, configure and run this<br>software, as well as how to find documentation and report bugs, please<br>consult the README file.<br><br>- -- <br>Larissa Shapiro<br>
Internet Systems Consortium Product Manager<br>Technology Leadership for the Common Good<br><a href="tel:%2B1%20650%20423%201335" target="_blank" value="+16504231335">+1 650 423 1335</a><br><a href="http://www.isc.org/" target="_blank">www.isc.org</a><br>
<br>- -- <br>Larissa Shapiro<br>Internet Systems Consortium Product Manager<br>Technology Leadership for the Common Good<br><a href="tel:%2B1%20650%20423%201335" target="_blank" value="+16504231335">+1 650 423 1335</a><br>
<a href="http://www.isc.org/" target="_blank">www.isc.org</a><br>-----BEGIN PGP SIGNATURE-----<br>Version: GnuPG/MacGPG2 v2.0.14 (Darwin)<br>Comment: Using GnuPG with Mozilla - <a href="http://enigmail.mozdev.org/" target="_blank">http://enigmail.mozdev.org/</a><br>
<br></div></div>iQEcBAEBAgAGBQJOQp5BAAoJEBOIp87tasiUWxgH/iNkMSXqGA9NcSC0TSZbFNzg<br>TQR2qYTwrucoXDuqqwNUACgm4v8xV4G4YdDintARNBRmnM/E0JPuyCM67NqpSzGp<br>KTTOeR7TaU4MMRkSiGlZalP8HISmgXcsPRDS8ZoFlVQ2eQxLsIOTbCnVL0Wdr+7F<br>dVfP7dv+IYImX3RUxeFDrZOCp9k3bEQd/lDgykOPympnrZc+pkBH7PhfreozdtQN<br>
sLuHyc4H/Ysim1YrR6GqqgPQMJ+V17zetl7s5dhfZFjIhFEuyHJgu/wDoSCV7BXn<br>C1afEC9WNxm2puIcJ4Uex/vT+NSPy3j0wEdW0xneO2z1avdaIyUqFue1DKH3m6A=<br>=6T+O<br>-----END PGP SIGNATURE-----<br><br></div><br>_______________________________________________<br>
dhcp-users mailing list<br><a href="mailto:dhcp-users@lists.isc.org">dhcp-users@lists.isc.org</a><br><a href="https://lists.isc.org/mailman/listinfo/dhcp-users" target="_blank">https://lists.isc.org/mailman/listinfo/dhcp-users</a><br>
</blockquote></div><br>Anyone know if there is a .deb package for the 4.2.2 version??