CVE-2012-3954: Canonical Ubuntu Linux

Low severity, CVSS 3.3. EPSS: 4.3% chance of exploitation in the next 30 days.

Multiple memory leaks in ISC DHCP 4.1.x and 4.2.x before 4.2.4-P1 and 4.1-ESV before 4.1-ESV-R6 allow remote attackers to cause a denial of service (memory consumption) by sending many requests.

Affected products

  • Canonical Ubuntu Linux: version 11.04 only; version 11.10 only; version 12.04 only
  • Debian Debian Linux: version 6.0 only; version 7.0 only
  • ISC Dhcp: version 4.1.0 only; version 4.1.1 only; version 4.1.2 only; version 4.2.0 only; version 4.2.1 only; version 4.2.2 only; …

Published 2012-07-25. Last modified 2026-06-16.