PT-2019-18106 · Isc+1 · Kea Dhcpv4 Server+1

Published

2019-08-28

·

Updated

2025-09-21

·

CVE-2019-6473

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Kea DHCPv4 server versions 1.4.0 through 1.5.0 Kea DHCPv4 server versions 1.6.0-beta1 Kea DHCPv4 server versions 1.6.0-beta2
Description The issue is caused by an invalid hostname option that triggers an assertion failure in the Kea DHCPv4 server process, resulting in the server process exiting.
Recommendations For versions 1.4.0 through 1.5.0, update to a version outside of the affected range to resolve the issue. For version 1.6.0-beta1, update to a version outside of the affected range to resolve the issue. For version 1.6.0-beta2, update to a version outside of the affected range to resolve the issue.

Fix

Assertion Failure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-6473
USN-7759-1

Affected Products

Kea Dhcpv4 Server
Ubuntu