Impact
Windows DHCP Server suffers an integer underflow that can lead to an information disclosure when an attacker sends specially crafted DHCP packets on an adjacent network. The flaw allows the broker to read bytes beyond the intended buffer, leaking sensitive data. The issue is classified under CWE-125 for unsigned integer underflow and CWE-191 for signed integer underflow, both of which can compromise confidentiality.
Affected Systems
The vulnerability affects multiple Windows operating systems, including Windows 10 versions 1607 and 1809, and Windows Server editions 2012, 2012 R2, 2016, 2019, 2022, and 2025. Both standard and Server Core installations are listed, meaning all configurations of these OS versions are potentially impacted.
Risk and Exploitability
With a CVSS score of 6.5, the risk is moderate; the EPSS score indicates a likelihood of exploitation below 1%, suggesting it is not a high priority for attackers. The vulnerability is not listed in the CISA KEV catalog. The exploit requires an attacker to be able to reach the DHCP server on the same broadcast domain, typically through a local or adjacent network. If achieved, the attacker can gain confidential data from memory, which could then be leveraged for further compromise.
OpenCVE Enrichment