Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-56114— dhcpcd Stack Out-of-Bounds Write in dhcp6_makemessage()

CVSS 5.3 · Medium EPSS 0.18% · P7

Affected Version Matrix 2

VendorProductVersion RangeStatus
NetworkConfigurationdhcpcd≤ 10.3.2affected
2f00c7bfc408b6582d331932dfa47829c4819029unaffected
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2026-56114

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
dhcpcd Stack Out-of-Bounds Write in dhcp6_makemessage()
Source: CVE Program / CVE List V5
Vulnerability Description
dhcpcd through 10.3.2, fixed in commit 2f00c7b, contains a one-byte stack out-of-bounds write vulnerability in dhcp6_makemessage() in src/dhcp6.c that allows unauthenticated same-link attackers to write beyond a fixed local buffer by serializing an oversized RFC6603 OPTION_PD_EXCLUDE option body. Attackers can send a crafted DHCPv6 ADVERTISE message containing an IA_PD IAPREFIX /0 with a valid OPTION_PD_EXCLUDE using an exclude prefix length of /121 through /128 to trigger the out-of-bounds write and potentially corrupt adjacent stack memory.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
跨界内存写
Source: CVE Program / CVE List V5
Vulnerability Title
NetworkConfiguration dhcpcd 缓冲区错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
NetworkConfiguration dhcpcd是NetworkConfiguration团队的一款DHCP客户端软件。 NetworkConfiguration dhcpcd 10.3.2及之前版本存在缓冲区错误漏洞,该漏洞源于src/dhcp6.c中的dhcp6_makemessage()函数存在单字节栈越界写入,未经身份验证的同链路攻击者可通过序列化过大的OPTION_PD_EXCLUDE选项体,写入固定本地缓冲区之外,从而触发越界写入并可能破坏相邻堆栈内存。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
NetworkConfigurationdhcpcd 0 ~ 10.3.2 -

II. Public POCs for CVE-2026-56114

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-56114

登录查看更多情报信息。

Patches & Fixes for CVE-2026-56114 (1)

Vendor Advisories for CVE-2026-56114 (1)

Same Patch Batch · NetworkConfiguration · 2026-06-23 · 4 CVEs total

CVE-2026-561166.5 MEDIUMdhcpcd Memory Leak DoS via IPv6 Router Advertisement Handling
CVE-2026-561135.3 MEDIUMdhcpcd Heap Use-After-Free in dhcp6_deprecateaddrs via DHCPv6 RENEW
CVE-2026-561174.7 MEDIUMdhcpcd Heap Use-After-Free via Control Socket Handling

IV. Related Vulnerabilities

V. Comments for CVE-2026-56114

No comments yet


Leave a comment