Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-3608

Опубликовано: 25 мар. 2026
Источник: debian
EPSS Низкий

Описание

Sending a maliciously crafted message to the kea-ctrl-agent, kea-dhcp-ddns, kea-dhcp4, or kea-dhcp6 daemons over any configured API socket or HA listener can cause the receiving daemon to exit with a stack overflow error. This issue affects Kea versions 2.6.0 through 2.6.4 and 3.0.0 through 3.0.2.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
isc-keafixed3.0.3-1package
isc-keafixed2.6.3-1+deb13u1trixiepackage

Примечания

  • https://kb.isc.org/docs/cve-2026-3608

EPSS

Процентиль: 69%
0.01361
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
4 месяца назад

Sending a maliciously crafted message to the kea-ctrl-agent, kea-dhcp-ddns, kea-dhcp4, or kea-dhcp6 daemons over any configured API socket or HA listener can cause the receiving daemon to exit with a stack overflow error. This issue affects Kea versions 2.6.0 through 2.6.4 and 3.0.0 through 3.0.2.

CVSS3: 7.5
redhat
4 месяца назад

Sending a maliciously crafted message to the kea-ctrl-agent, kea-dhcp-ddns, kea-dhcp4, or kea-dhcp6 daemons over any configured API socket or HA listener can cause the receiving daemon to exit with a stack overflow error. This issue affects Kea versions 2.6.0 through 2.6.4 and 3.0.0 through 3.0.2.

CVSS3: 7.5
nvd
4 месяца назад

Sending a maliciously crafted message to the kea-ctrl-agent, kea-dhcp-ddns, kea-dhcp4, or kea-dhcp6 daemons over any configured API socket or HA listener can cause the receiving daemon to exit with a stack overflow error. This issue affects Kea versions 2.6.0 through 2.6.4 and 3.0.0 through 3.0.2.

suse-cvrf
3 месяца назад

Security update for kea

suse-cvrf
4 месяца назад

Security update for kea

EPSS

Процентиль: 69%
0.01361
Низкий