[prev in list] [next in list] [prev in thread] [next in thread] 

List:       dhcp-announce
Subject:    ISC_DHCP 4.1-ESV-R16b1 is now available for download. (Revised links)
From:       Thomas Markwalder <tmark () isc ! org>
Date:       2019-12-18 17:25:34
Message-ID: 0fb15705-2a9c-1cb1-18fa-00098b7bf4d8 () isc ! org
[Download RAW message or body]

Apologies, prior email had stale links:


ISC DHCP 4.1-ESV-R16b1 is now available for download.

This is the beta release of ISC DHCP 4.1-ESV-R162b1, a maintenance 
release that contains a few minor features and a number of bug fixes.

Field testing is an important part of our quality process. Please report 
bugs to dhcp-bugs@isc.org.

A list of the changes in this release has been appended to the end of 
this message.  For a complete list of changes from any previous release, 
please consult the RELNOTES file within the source distribution.

Knowledgebase articles about various topics and features can be found here:

     https://kb.isc.org/docs

Webinars can be found here:

     https://www.isc.org/presentations

This release and its OpenPGP-signatures are available now from:

     https://www.isc.org/download

https://downloads.isc.org/isc/dhcp/4.1-ESV-R16b1/dhcp-4.1-ESV-R16b1.tar.gz
https://downloads.isc.org/isc/dhcp/4.1-ESV-R16b1/dhcp-4.1-ESV-R16b1.tar.gz.sha512.asc
https://downloads.isc.org/isc/dhcp/4.1-ESV-R16b1/dhcp-4.1-ESV-R16b1.tar.gz.sha256.asc
https://downloads.isc.org/isc/dhcp/4.1-ESV-R16b1/dhcp-4.1-ESV-R16b1.tar.gz.sha1.asc

or
http://ftp.isc.org/isc/dhcp/4.1-ESV-R16b1/dhcp-4.1-ESV-R16b1.tar.gz
http://ftp.isc.org/isc/dhcp/4.1-ESV-R16b1/dhcp-4.1-ESV-R16b1.tar.gz.sha512.asc
http://ftp.isc.org/isc/dhcp/4.1-ESV-R16b1/dhcp-4.1-ESV-R16b1.tar.gz.sha256.asc
http://ftp.isc.org/isc/dhcp/4.1-ESV-R16b1/dhcp-4.1-ESV-R16b1.tar.gz.sha1.asc

ISC's Release Signing Key can be obtained at:

     https://www.isc.org/pgpkey

The following is an excerpt from the 4.1-ESV-R16b1 release notes:

Version 4.1-ESV-R16b1 is a maintenance release of an extended support 
version (ESV) release.  ESVs are intended for users who have longer 
upgrade constraints.  Please see our web page 
https://kb.isc.org/docs/aa-00896 for more information on ESVs.

             Changes since 4.1-ESV-R15-P1

- Made minor changes to eliminate warnings when compiled with GCC 9.
   Thanks to Brett Neumeier for bringing the matter to our attention.
   [Gitlab #15]

- Fixed define flags when using SO_BINDTODEVICE. Thanks to Joe LeVeque for
   reporting the issue.
   [ISC-Bugs #19]

- The "d" domain name option format was incorrectly handled as text
   instead of RFC 1035 wire format. Thanks to Jay Doran at BlueCat Networks
   for reporting this issue.
   [Gitlab #2]

- Corrected a number of reference counter and zero-length buffer leaks.
   [Gitlab #57]

- The option format for the server option omapi-key was changed to a
   format type 'k' (key name); while server options ldap-port and
   ldap-init-retry were changed to 'L' (unsigned 32-bit integer). These
   three options were inadvertently broken when the 'd' format content 
was changed.
   [Gitlab #68]

             Changes since 4.1-ESV-R15

- Corrected dhclient command line parsing for --dad-wait-time that causes
   even valid values to fail as invalid on some environments.
   [ISC-Bugs #46535]

- Added to code ignore empty IPv4 host name option (code 12). While RFC 2132
   states the option cannot be empty, some clients are apparently capable of
   sending it. Prior to this the server was attempting to use it and 
store it
   in the lease file causing issues with DDNS and so forth.
   [ISC-bugs #43786]

- When given the -T command line argument, in addition to reading the
   current lease file, the server will write the leases to a temporary
   lease file.  This can help detect issues in server configuration that
   only surface when leases are written to the file.  The current lease
   file will not be modified and the temporary lease file is removed upon
   completion of the test.
   [ISC-Bugs #22267]

- The server now recognizes environment variables PATH_DHCPD_DB and
   PATH_DHCPD_PID.  These had been incorrectly compiled out of the code
   unless DHCPv6 support was disabled. Additionally, the server man
   pages were corrected to accurately reflect how the server chooses
   file names (see lease-file-name and pid-file-name statements). Thanks
   to Fernando Soto at BlueCat Networks for bringing this matter to our 
attention.
   [ISC-Bugs #46859]

- Removed an "Impossible condition" error upon exit in the dhcpd server that
   has been shutdown via OMAPI. This condition was only apparent under 
Solaris
   when building with --enable-use-sockets and --enable-ipv4-pktinfo.
   [ISC-Bugs #36118]

- Added clarifying text to dhcpd.conf.5 explaining the class match 
expressions
   cannot rely on the results of executable statements.
   [ISC-Bugs #45451]

- Support for sending and receiving additional DHCP4 options has been added
   to both the dhcpd and dhclient.  Specifically: option codes 93,94, and 97
   (RFC 4578); code 150 (RFC 5859); and codes 209,219, and 211 (RFC 5071).
   Beyond configuring, sending, requesting, and receiving these options 
neither
   server nor client apply any additional logic based on their values.
   Thanks to Peter Lewis for requesting this change.
   [ISC-Bugs 47062]

! Option reference count was not correctly decremented in error path
   when parsing buffer for options. Reported by Felix Wilhelm, Google
   Security Team.
   [ISC-Bugs #47140]
   CVE: CVE-2018-5733

! Corrected an issue where large sized 'X/x' format options were causing
   option handling logic to overwrite memory when expanding them to human
   readable form. Reported by Felix Wilhelm, Google Security Team.
   [ISC-Bugs #47139]
   CVE: CVE-2018-5732

_______________________________________________
dhcp-announce mailing list
dhcp-announce@lists.isc.org
https://lists.isc.org/mailman/listinfo/dhcp-announce

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic