Dibbler is a DHCPv6 client and server implementation with a focused product scope, and its vulnerability profile centers on network protocol parsing and state-management issues including improper input validation, memory-buffer boundary violations, and sensitive-information exposure. Current severity, exploitation, and exposure metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Dibbler over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-5028HIGH Dibbler 0.6.0 on Linux uses weak world-writable permissions for unspecified files in /var/lib/dibbler, which has unknown impact and local attack vectors. | Sep 21, 2007 | 7.5 | 21 | NO | NO |
CVE-2007-5029MEDIUM Dibbler 0.6.0 does not verify that certain length parameters are appropriate for buffer sizes, which allows remote attackers to trigger a buffer over-read and cause a denial of ser | Sep 21, 2007 | 5.0 | 15 | NO | NO |
CVE-2007-5030MEDIUM Multiple integer overflows in Dibbler 0.6.0 allow remote attackers to cause a denial of service (daemon crash) via packets containing options with large lengths, which trigger atte | Sep 21, 2007 | 5.0 | 15 | NO | NO |
CVE-2007-5031MEDIUM The TSrvOptIA_NA::rebind method in SrvOptions/SrvOptIA_NA.cpp in Dibbler 0.6.0 allows remote attackers to cause a denial of service (NULL dereference and daemon crash) via an inval | Sep 21, 2007 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Dibbler.
Media articles that mention a CVE ID that affects a product developed by Dibbler — matched by CVE ID, not by vendor name.