angler-fishThe Vulnerability History Project

sd-dhcp-client: tentatively ignore FORCERENEW command

      This makes DHCP client ignore FORCERENEW requests, as unauthenticated
FORCERENEW requests causes a security issue (TALOS-2020-1142, CVE-2020-13529).

Let's re-enable this after RFC3118 (Authentication for DHCP Messages)
and/or RFC6704 (Forcerenew Nonce Authentication) are implemented.

Fixes #16774.
    
commit 38e980a6a5a3442c2f48b1f827284388096d8ca5
-8
expand_less