Skip to content
Fedora 42 and 43 Kea 3.0.3 Denial of Service Vulnerability Fix Released

Fedora 42 and 43 Kea 3.0.3 Denial of Service Vulnerability Fix Released

First seen 8 Apr 2026, 08:04 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •April 9, 2026 at 08:01 UTC
  • •CVE-2026-3608 is a Denial of Service vulnerability in Kea DHCP servers.
  • •Affected systems include Fedora 42 and Fedora 43 with Kea DHCP server installed.
  • •Users should upgrade to version 3.0.3 to mitigate the vulnerability immediately.

On April 8, 2026, two articles reported on the release of version 3.0.3 of the Kea DHCP server, which addresses a critical Denial of Service vulnerability identified as CVE-2026-3608. This vulnerability, published on March 25, 2026, allows attackers to exploit the DHCP server through maliciously crafted messages, potentially disrupting services for affected users. The vulnerability impacts both Fedora 42 and Fedora 43 systems running the Kea DHCP server. Users are advised to upgrade to the patched version 3.0.3 to mitigate the risk. The update can be installed using the 'dnf' package manager with specific commands provided in the articles. The vulnerability's scope includes all systems utilizing the affected DHCP implementation. The articles emphasize the importance of applying the update promptly to avoid service disruptions.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 182d ago How this analysis works

Timeline

2026-03-25
CVE-2026-3608 published
2026-04-08
Fedora 42 and 43 Kea 3.0.3 released to fix CVE-2026-3608

More articles in this cluster (2)

Following this threat?

Track Fedora and CVE-2026-3608 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed