The vendor explicitly states that these products are not affected by this CVE.
- All currently supported Red Hat products
- Summary
- A flaw was found in wicked. An unauthenticated attacker on the same network who sends a crafted DHCP/UDP packet can trigger an out-of-bounds read vulnerability in the DHCPv4 option parser. This allows the client to parse adjacent heap memory as DHCP options, potentially leading to the disclosure of sensitive heap contents such as allocator metadata or pointer values into lease fields. The over-read is bounded to 68 bytes.
- Remediation
- No remediation text is recorded.
