VYPR

Kea DHCPv6 server

by Isc

CVEs (2)

  • CVE-2019-6472MedOct 16, 2019
    risk 0.42cvss 6.5epss 0.01

    A packet containing a malformed DUID can cause the Kea DHCPv6 server process (kea-dhcp6) to exit due to an assertion failure. Versions affected: 1.4.0 to 1.5.0, 1.6.0-beta1, and 1.6.0-beta2.

  • CVE-2026-18103Aug 4, 2026
    risk 0.00cvss epss

    A flaw was found in dhcp-server. A remote attacker with network access to the OMAPI (Open Management Application Programming Interface) port, especially if not secured with TSIG (Transaction Signature) key authentication, could send a specially crafted lease creation request.…