Логотип exploitDog
bind:"CVE-2025-40779"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-40779"

Количество 8

Количество 8

ubuntu логотип

CVE-2025-40779

5 месяцев назад

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2025-40779

5 месяцев назад

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2025-40779

5 месяцев назад

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2025-40779

5 месяцев назад

If a DHCPv4 client sends a request with some specific options, and Kea ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-v32h-8f7r-3543

5 месяцев назад

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2025-21006

около 2 месяцев назад

ELSA-2025-21006: kea security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2025-12586

5 месяцев назад

Уязвимость DHCP-сервера с открытым исходным кодом Kea, связанная с неконтролируемым достижимым утверждением, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20250930-15

4 месяца назад

Уязвимость kea

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-40779

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2025-40779

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2025-40779

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
debian логотип
CVE-2025-40779

If a DHCPv4 client sends a request with some specific options, and Kea ...

CVSS3: 7.5
0%
Низкий
5 месяцев назад
github логотип
GHSA-v32h-8f7r-3543

If a DHCPv4 client sends a request with some specific options, and Kea fails to find an appropriate subnet for the client, the `kea-dhcp4` process will abort with an assertion failure. This happens only if the client request is unicast directly to Kea; broadcast messages do not cause the problem. This issue affects Kea versions 2.7.1 through 2.7.9, 3.0.0, and 3.1.0.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
oracle-oval логотип
ELSA-2025-21006

ELSA-2025-21006: kea security update (IMPORTANT)

около 2 месяцев назад
fstec логотип
BDU:2025-12586

Уязвимость DHCP-сервера с открытым исходным кодом Kea, связанная с неконтролируемым достижимым утверждением, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
5 месяцев назад
redos логотип
ROS-20250930-15

Уязвимость kea

CVSS3: 7.5
0%
Низкий
4 месяца назад

Уязвимостей на страницу