Loading HuntDB...

GHSA-qxx9-pw4x-fc72

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

A missing check on incoming client requests can be exploited to cause a situation where the Kea server's lease storage contains leases which are rejected as invalid when the server tries to load leases from storage on restart. If the number of such leases exceeds a hard-coded limit in the Kea code, a server trying to restart will conclude that there is a problem with its lease store and give up. Versions affected: 1.4.0 to 1.5.0, 1.6.0-beta1, and 1.6.0-beta2

Related CVEs

Key Information

GHSA ID
GHSA-qxx9-pw4x-fc72
Published
May 24, 2022 4:59 PM
Last Modified
April 4, 2024 2:30 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: August 3, 2025 6:48 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.