PT-2025-34937 · Kea+2 · Kea+2

Published

2025-01-01

·

Updated

2026-03-11

·

CVE-2025-40779

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions: Kea versions 2.7.1 through 2.7.9 Kea version 3.0.0 Kea version 3.1.0
Description: If a DHCPv4 client sends a request with specific options and Kea fails to find an appropriate subnet for the client, the kea-dhcp4 process will abort with an assertion failure. This issue occurs only when the client request is unicast directly to Kea; broadcast messages do not cause the problem. A malicious or misconfigured DHCP client can crash the Kea DHCPv4 service by sending a single packet.
Recommendations: Update Kea to a version later than 3.1.0.

Fix

NULL Pointer Dereference

Assertion Failure

Weakness Enumeration

Related Identifiers

BDU:2025-12586
CVE-2025-40779
OPENSUSE-SU-2025:15499-1
OPENSUSE-SU-2026:20341-1
RHSA-2025:21006

Affected Products

Debian
Kea
Red Os