CVE-2026-44932
Passing of unsanitized strings from DHCP replies into the wicked dhcp client before wicked 0.6.79 could be used by attackers operating a malicious DHCP server to execute code on the local machine.
Faiblesse
Passing of unsanitized strings from DHCP replies into the wicked dhcp client before wicked 0.6.79 could be used by attackers operating a malicious DHCP server to execute code on the local machine.
Références
- https://bugzilla.suse.com/show_bug.cgi?id=1265221
- https://github.com/openSUSE/wicked/releases/tag/version-0.6.79
- https://lists.suse.com/pipermail/sle-security-updates/2026-June/026688.html
- https://lists.suse.com/pipermail/sle-security-updates/2026-June/026689.html
- https://lists.suse.com/pipermail/sle-security-updates/2026-June/026690.html
- https://lists.suse.com/pipermail/sle-security-updates/2026-June/026691.html
Trouvez la faille avant un attaquant.
Connectez-vous avec GitHub et lancez votre premier audit en moins d'une minute. L'offre gratuite ne nécessite aucune carte bancaire.