To trigger the issue, three configuration parameters must have specific settings: "hostname-char-set" must be left at the default setting, which is "[^A-Za-z0-9.-]"; "hostname-char-replacement" must be empty (the default); and "ddns-qualifying-suffix" must *NOT* be empty (the default is empty). DDNS updates do not need to be enabled for this issue to manifest. A client that sends certain option content would then cause kea-dhcp4 to exit unexpectedly. This issue affects Kea versions 3.0.1 through 3.0.1 and 3.1.1 through 3.1.2.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade keaUpgrade kea-devel | Dec 10, 2025 | Oct 29, 2025 |
| Oracle_linux | — | Upgrade kea-keamaUpgrade kea-hooksUpgrade kea-docUpgrade kea-libsUpgrade kea | Dec 5, 2025 | Oct 29, 2025 |
| Redhat_linux | — | Upgrade kea-docUpgrade kea-debugsourceUpgrade kea-devel-debuginfoUpgrade kea-libsUpgrade kea-keama-debuginfoUpgrade kea-keamaUpgrade kea-debuginfoUpgrade kea-libs-debuginfoUpgrade kea-hooks-debuginfoUpgrade keaUpgrade kea-hooks | Jan 27, 2026 | Oct 29, 2025 |
| Rocky_linux | — | Upgrade kea-keama-debuginfoUpgrade kea-libsUpgrade kea-debugsourceUpgrade kea-libs-debuginfoUpgrade kea-debuginfoUpgrade kea-hooks-debuginfoUpgrade kea-keamaUpgrade keaUpgrade kea-hooks | Feb 5, 2026 | Nov 21, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub