CNNVD-202510-3965 Information

CNNVD ID

CNNVD-202510-3965

CVE-2025-11232

  • CNNVD Published: 2025-10-29

Description (Chinese)

ISC Kea是ISC组织的一个现代开源 DHCPv4 和 DHCPv6 服务器。 ISC Kea 3.0.1版本至3.0.1版本和3.1.1版本至3.1.2版本存在安全漏洞,该漏洞源于特定配置参数设置不当,可能导致kea-dhcp4意外退出。

Description (English)

ISC Kea is a modern open source for ISC organizations DHCPv4 and DHCPv6 servers. There is a security gap between ISIC Kea versions 3.01 to 3.01 and 3.1.1 to 3.1.2, which results from inappropriate configurations of specific configuration parameters, which may lead to an accidental exit of kea-dhcp4.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

ISC

Published

2025-10-29

Last Modified

2026-02-24

References

https://kb.isc.org/docs/cve-2025-11232 https://access.redhat.com/security/cve/cve-2025-11232 https://vigilance.fr/vulnerability/ISC-Kea-denial-of-service-via-hostname-char-Option-Content-48636

Patch

https://kea.readthedocs.io/en/latest/arm/install.html

Share on: