vulnerability

Oracle Linux: CVE-2025-32803: ELSA-2025-9178: kea security update (IMPORTANT)

Severity
2
CVSS
(AV:L/AC:L/Au:S/C:P/I:N/A:N)
Published
May 28, 2025
Added
Jul 10, 2025
Modified
Jul 16, 2025

Description

A vulnerability was found in the Kea package, where an attacker with access to a local unprivileged user may be able to read the logs and DHCP lease information. This can be used to retrieve sensitive information about the DHCP clients and about the Kea process itself.

Solutions

oracle-linux-upgrade-keaoracle-linux-upgrade-kea-docoracle-linux-upgrade-kea-hooksoracle-linux-upgrade-kea-keamaoracle-linux-upgrade-kea-libs
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.