Логотип exploitDog
bind: "CVE-2025-40779"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2025-40779"

Количество 7

Количество 7

ubuntu логотип

CVE-2025-40779

3 месяца назад

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2025-40779

3 месяца назад

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2025-40779

3 месяца назад

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2025-40779

3 месяца назад

If a DHCPv4 client sends a request with some specific options, and Kea ...

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20250930-15

2 месяца назад

Уязвимость kea

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-v32h-8f7r-3543

3 месяца назад

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2025-12586

3 месяца назад

Уязвимость DHCP-сервера с открытым исходным кодом Kea, связанная с неконтролируемым достижимым утверждением, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-40779

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
0%
Низкий
3 месяца назад
redhat логотип
CVE-2025-40779

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
0%
Низкий
3 месяца назад
nvd логотип
CVE-2025-40779

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
0%
Низкий
3 месяца назад
debian логотип
CVE-2025-40779

If a DHCPv4 client sends a request with some specific options, and Kea ...

CVSS3: 7.5
0%
Низкий
3 месяца назад
redos логотип
ROS-20250930-15

Уязвимость kea

CVSS3: 7.5
0%
Низкий
2 месяца назад
github логотип
GHSA-v32h-8f7r-3543

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
0%
Низкий
3 месяца назад
fstec логотип
BDU:2025-12586

Уязвимость DHCP-сервера с открытым исходным кодом Kea, связанная с неконтролируемым достижимым утверждением, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
3 месяца назад

Уязвимостей на страницу