CVE-2023-50432

simple-dhcp-server through ec976d2 allows remote attackers to cause a denial of service (daemon crash) by sending a DHCP packet without any option fields, which causes free_packet in dhcp_packet.c to dereference a NULL pointer.
Configurations

No configuration.

History

20 Nov 2024, 16:35

Type Values Removed Values Added
Summary
  • (es) simple-dhcp-server a través de ec976d2 permite a atacantes remotos provocar una denegación de servicio (caída del daemon) enviando un paquete DHCP sin ningún campo de opción, lo que provoca que free_packet en dhcp_packet.c elimine la referencia a un puntero NULL.
CWE CWE-476
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3

29 Apr 2024, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-29 22:15

Updated : 2024-11-20 16:35


NVD link : CVE-2023-50432

Mitre link : CVE-2023-50432

CVE.ORG link : CVE-2023-50432


JSON object : View

Products Affected

No product.

CWE
CWE-476

NULL Pointer Dereference