https://seclists.org/oss-sec/2025/q2/178: ISC has disclosed the vulnerabilities in Kea (CVE-2025-32801, CVE-2025-32802, CVE-2025-32803)
Published May 28, 2025
·Updated
Affected Software
1 affected component
Internet Systems Consortium Kea
Frequently Asked Questions
1
What is the severity of CVE-2025-32801?
CVE-2025-32801 has been assessed as a high severity vulnerability.
2
How do I fix CVE-2025-32801?
To fix CVE-2025-32801, update to the patched version of ISC Kea provided by the vendor.
3
What is the impact of CVE-2025-32802?
CVE-2025-32802 can lead to potential denial of service situations affecting the ISC Kea service.
4
Are CVE-2025-32803 and CVE-2025-32802 related?
Yes, both CVE-2025-32803 and CVE-2025-32802 are vulnerabilities in ISC Kea disclosed together.
5
When were these vulnerabilities in ISC Kea disclosed?
The vulnerabilities CVE-2025-32801, CVE-2025-32802, and CVE-2025-32803 were disclosed on May 28, 2025.