Vulnerability Description
An invalid hostname option can trigger an assertion failure in the Kea DHCPv4 server process (kea-dhcp4), causing the server process to exit. Versions affected: 1.4.0 to 1.5.0, 1.6.0-beta1, and 1.6.0-beta2.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ics | Kea | >= 1.4.0, <= 1.5.0 |
Related Weaknesses (CWE)
References
- https://kb.isc.org/docs/cve-2019-6473Vendor Advisory
- https://kb.isc.org/docs/cve-2019-6473Vendor Advisory
FAQ
What is CVE-2019-6473?
CVE-2019-6473 is a vulnerability with a CVSS score of 6.5 (MEDIUM). An invalid hostname option can trigger an assertion failure in the Kea DHCPv4 server process (kea-dhcp4), causing the server process to exit. Versions affected: 1.4.0 to 1.5.0, 1.6.0-beta1, and 1.6.0-...
How severe is CVE-2019-6473?
CVE-2019-6473 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-6473?
Check the references section above for vendor advisories and patch information. Affected products include: Ics Kea.