VYPR

Wicked

by OpenSUSE

Source repositories

CVEs (5)

  • CVE-2026-44932HigJun 16, 2026
    risk 0.57cvss 8.8epss 0.00

    Passing of unsanitized strings from DHCP replies into the wicked dhcp client before wicked 0.6.79 could be used by attackers operating a malicious DHCP server to execute code on the local machine.

  • CVE-2019-18903HigMar 2, 2020
    risk 0.49cvss 7.5epss 0.02

    A Use After Free vulnerability in wicked of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15; openSUSE Leap 15.1, Factory allows remote attackers to cause DoS or potentially code execution. This issue affects: SUSE Linux Enterprise Server 12 wicked versions prior…

  • CVE-2019-18902HigMar 2, 2020
    risk 0.49cvss 7.5epss 0.02

    A Use After Free vulnerability in wicked of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15; openSUSE Leap 15.1, Factory allows remote attackers to cause DoS or potentially code execution. This issue affects: SUSE Linux Enterprise Server 12 wicked versions prior…

  • CVE-2020-7217HigFeb 11, 2020
    risk 0.49cvss 7.5epss 0.02

    An ni_dhcp4_fsm_process_dhcp4_packet memory leak in openSUSE wicked 0.6.55 and earlier allows network attackers to cause a denial of service by sending DHCP4 packets with a different client-id.

  • CVE-2020-7216HigFeb 5, 2020
    risk 0.49cvss 7.5epss 0.01

    An ni_dhcp4_parse_response memory leak in openSUSE wicked 0.6.55 and earlier allows network attackers to cause a denial of service by sending DHCP4 packets without a message type option.