CVE-2023-50433

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

marshall in dhcp_packet.c in simple-dhcp-server through ec976d2 allows remote attackers to cause a denial of service by sending a malicious DHCP packet. The crash is caused by a type confusion bug that results in a large memory allocation; when this memory allocation fails the DHCP server will crash.

Published 2024-04-29. Last modified 2026-06-17.