Логотип exploitDog
bind:"CVE-2025-32803" OR bind:"CVE-2025-32801" OR bind:"CVE-2025-32802"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-32803" OR bind:"CVE-2025-32801" OR bind:"CVE-2025-32802"

Количество 22

Количество 22

rocky логотип

RLSA-2025:9178

3 месяца назад

Important: kea security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-9178

6 месяцев назад

ELSA-2025-9178: kea security update (IMPORTANT)

EPSS: Низкий
redos логотип

ROS-20250924-05

3 месяца назад

Множественные уязвимости kea

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2025-32803

7 месяцев назад

In some cases, Kea log files or lease files may be world-readable. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 4
EPSS: Низкий
redhat логотип

CVE-2025-32803

7 месяцев назад

In some cases, Kea log files or lease files may be world-readable. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 3.3
EPSS: Низкий
nvd логотип

CVE-2025-32803

7 месяцев назад

In some cases, Kea log files or lease files may be world-readable. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 4
EPSS: Низкий
debian логотип

CVE-2025-32803

7 месяцев назад

In some cases, Kea log files or lease files may be world-readable. Thi ...

CVSS3: 4
EPSS: Низкий
github логотип

GHSA-prj7-2jhj-62fj

7 месяцев назад

In some cases, Kea log files or lease files may be world-readable. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 4
EPSS: Низкий
fstec логотип

BDU:2025-11745

7 месяцев назад

Уязвимость DHCP-сервера с открытым исходным кодом Kea, связанная с некорректно используемыми стандартными разрешениями, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 4
EPSS: Низкий
ubuntu логотип

CVE-2025-32802

7 месяцев назад

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2025-32802

7 месяцев назад

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2025-32802

7 месяцев назад

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2025-32802

7 месяцев назад

Kea configuration and API directives can be used to overwrite arbitrar ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2025-32801

7 месяцев назад

Kea configuration and API directives can be used to load a malicious hook library. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2025-32801

7 месяцев назад

Kea configuration and API directives can be used to load a malicious hook library. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2025-32801

7 месяцев назад

Kea configuration and API directives can be used to load a malicious hook library. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2025-32801

7 месяцев назад

Kea configuration and API directives can be used to load a malicious h ...

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-vwc9-wh34-hrfm

7 месяцев назад

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-hv8v-455m-2grc

7 месяцев назад

Kea configuration and API directives can be used to load a malicious hook library. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2025-11746

7 месяцев назад

Уязвимость DHCP-сервера с открытым исходным кодом Kea, связанная с некорректным внешним управлением именем или путем файла, позволяющая нарушителю получить доступ на запись произвольных файлов

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2025:9178

Important: kea security update

3 месяца назад
oracle-oval логотип
ELSA-2025-9178

ELSA-2025-9178: kea security update (IMPORTANT)

6 месяцев назад
redos логотип
ROS-20250924-05

Множественные уязвимости kea

CVSS3: 6.1
3 месяца назад
ubuntu логотип
CVE-2025-32803

In some cases, Kea log files or lease files may be world-readable. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 4
0%
Низкий
7 месяцев назад
redhat логотип
CVE-2025-32803

In some cases, Kea log files or lease files may be world-readable. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 3.3
0%
Низкий
7 месяцев назад
nvd логотип
CVE-2025-32803

In some cases, Kea log files or lease files may be world-readable. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 4
0%
Низкий
7 месяцев назад
debian логотип
CVE-2025-32803

In some cases, Kea log files or lease files may be world-readable. Thi ...

CVSS3: 4
0%
Низкий
7 месяцев назад
github логотип
GHSA-prj7-2jhj-62fj

In some cases, Kea log files or lease files may be world-readable. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 4
0%
Низкий
7 месяцев назад
fstec логотип
BDU:2025-11745

Уязвимость DHCP-сервера с открытым исходным кодом Kea, связанная с некорректно используемыми стандартными разрешениями, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 4
0%
Низкий
7 месяцев назад
ubuntu логотип
CVE-2025-32802

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
0%
Низкий
7 месяцев назад
redhat логотип
CVE-2025-32802

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
0%
Низкий
7 месяцев назад
nvd логотип
CVE-2025-32802

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
0%
Низкий
7 месяцев назад
debian логотип
CVE-2025-32802

Kea configuration and API directives can be used to overwrite arbitrar ...

CVSS3: 6.1
0%
Низкий
7 месяцев назад
ubuntu логотип
CVE-2025-32801

Kea configuration and API directives can be used to load a malicious hook library. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 7.8
0%
Низкий
7 месяцев назад
redhat логотип
CVE-2025-32801

Kea configuration and API directives can be used to load a malicious hook library. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 7.8
0%
Низкий
7 месяцев назад
nvd логотип
CVE-2025-32801

Kea configuration and API directives can be used to load a malicious hook library. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 7.8
0%
Низкий
7 месяцев назад
debian логотип
CVE-2025-32801

Kea configuration and API directives can be used to load a malicious h ...

CVSS3: 7.8
0%
Низкий
7 месяцев назад
github логотип
GHSA-vwc9-wh34-hrfm

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
0%
Низкий
7 месяцев назад
github логотип
GHSA-hv8v-455m-2grc

Kea configuration and API directives can be used to load a malicious hook library. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 7.8
0%
Низкий
7 месяцев назад
fstec логотип
BDU:2025-11746

Уязвимость DHCP-сервера с открытым исходным кодом Kea, связанная с некорректным внешним управлением именем или путем файла, позволяющая нарушителю получить доступ на запись произвольных файлов

CVSS3: 6.1
0%
Низкий
7 месяцев назад

Уязвимостей на страницу