Ics develops Kea, a widely deployed open-source DHCP and DHCPv6 server used in enterprise and service-provider networks for address allocation and lease management. The vendor's vulnerability profile centers on assertion-failure conditions within the server's protocol and state-management logic, reflecting the complexity of handling diverse DHCP message types and lease-database operations. Current exposure and severity figures are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ics over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-6473MEDIUM An invalid hostname option can trigger an assertion failure in the Kea DHCPv4 server process (kea-dhcp4), causing the server process to exit. Versions affected: 1.4.0 to 1.5.0, 1.6 | Oct 16, 2019 | 6.5 | 17 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ics.
Media articles that mention a CVE ID that affects a product developed by Ics — matched by CVE ID, not by vendor name.