Re: NetReg: [Fwd: CERT Advisory CA-2003-01 Buffer Overflows in ISC DHCPD Minires Library]

New Message Reply Date view Thread view Subject view Author view Attachment view

From: Peter Valian (valianp@southwestern.edu)
Date: Thu Jan 23 2003 - 09:28:31 CST


You will need to upgrade to NetReg 1.3

ISC made some changes in the leases file that makes the netreg 1.2 lease
parser subroutine not work properly starting with dhcpd-3.0 somewhere
about RC10 (non-beta).

If you have things tweaked the way you want them, you could probably
just replace the one sub routine...I think its called like "find_lease".
I think there was another change in that routine that checks to see that
the "hostname" is different (netreg uses this field as the username).
We simply grep for all entries with that username and increment a number
that follows (i.e. valianp-1, valianp-2, valianp-3...).

also if you decide to just upgrade the whole admin.cgi, you will need to
change your subnet.dat file slightly.

whatever you do, back up your current setup :) !

-peter

David Meuleman wrote:
> That probably would have been helpful....netreg-1.2.
>
> Dave
>
> 1/22/2003 8:15:13 PM, Peter Valian <valianp@southwestern.edu> wrote:
>
>
>>what version of netreg are you running?
>>
>>David Meuleman wrote:
>>
>>>Would there be any issues with the netreg scripts if I upgraded from dhcp-3.0b1pl17 to dhcp-3.0pl2 or dhcp-3.0.1RC11.
>>>
>>>It needs to be done, but I'd like to know about any possible problems before I do it.
>>>
>>>Dave
>>>
>>>1/16/2003 9:33:23 AM, Peter Valian <valianp@southwestern.edu> wrote:
>>>
>>>
>>>
>>>>FYI for those of you not subscribed to the CERT advisory list,
>>>>

-- 
Peter Valian
Network & Systems Administrator
Southwestern University
Georgetown, Texas
--

********************************************************************** To unsubscribe from this list, send an e-mail message to majordomo@southwestern.edu containing a single line with the words: unsubscribe netreg Send requests for assistance to: owner-netreg@southwestern.edu **********************************************************************


New Message Reply Date view Thread view Subject view Author view Attachment view

This archive was generated by hypermail 2.1.4 : Thu Aug 12 2004 - 12:01:38 CDT