CVE-2023-50432

Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.

simple-dhcp-server through ec976d2 allows remote attackers to cause a denial of service (daemon crash) by sending a DHCP packet without any option fields, which causes free_packet in dhcp_packet.c to dereference a NULL pointer.

Published 2024-04-29. Last modified 2026-06-17.