Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Fedora 43: kea Critical Update CVE-2025-40779 DoS Threat 2025-9ead6bf29b

fedora
Calendar Grey September 17, 2025
Dist Fedora Esm H88
Important patch for Fedora 43's kea service addressing CVE-2025-40779 to improve safety and robustness.
New version 3.0.1 (rhbz#2391289) Fixes CVE-2025-40779 (rhbz#2391373)

Summary

DHCP implementation from Internet Systems Consortium, Inc. that features fully

functional DHCPv4, DHCPv6 and Dynamic DNS servers.

Both DHCP servers fully support server discovery, address assignment, renewal,

rebinding and release. The DHCPv6 server supports prefix delegation. Both

servers support DNS Update mechanism, using stand-alone DDNS daemon.

Update Information:

New version 3.0.1 (rhbz#2391289) Fixes CVE-2025-40779 (rhbz#2391373)

Change Log

* Fri Aug 29 2025 Martin Osvald - 3.0.1-1 - New version 3.0.1 (rhbz#2391289) - Fixes CVE-2025-40779 (rhbz#2391373)

References


[ 1 ] Bug #2391373 - CVE-2025-40779 kea: Kea crash upon interaction between specific client options and subnet selection https://bugzilla.redhat.com/show_bug.cgi?id=2391373

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-9ead6bf29b' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: kea
Product: Fedora 43
Version: 3.0.1
Release: 1.fc43
Summary: DHCPv4, DHCPv6 and DDNS server from ISC

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here