My apologies, the patch I had attached were from another testing directory I had and not the final one. Please find attached the correct defdiff file.
As part of testing :- => I tried building the deb file "debuild" => installing it "dpkg -i <debfile>" =>I tried running the it as "sudo dhcpcd eth0" and the machine gets configured with an ip address. I did not have a PoC in my possession, so I could not try it out. Hope this helps, cheers! ** Patch added: "dhcpcd_3.2.3-7ubuntu1.debdiff" https://bugs.launchpad.net/ubuntu/+source/dhcpcd/+bug/931036/+attachment/2737711/+files/dhcpcd_3.2.3-7ubuntu1.debdiff -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/931036 Title: dhcpcd before 5.2.12 allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a DHCP message. To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/dhcpcd/+bug/931036/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs