An exploitable denial-of-service vulnerability exists in Systemd 245. A specially crafted DHCP FORCERENEW packet can cause a server running the DHCP client to be vulnerable to a DHCP ACK spoofing attack. An attacker can forge a pair of FORCERENEW and DCHP ACK packets to reconfigure the server.
https://talosintelligence.com/vulnerability_reports/TALOS-2020-1142
https://security.netapp.com/advisory/ntap-20210625-0005/
https://security.gentoo.org/glsa/202107-48
http://www.openwall.com/lists/oss-security/2021/08/04/2
Source: MITRE
Published: 2021-05-10
Updated: 2022-04-28
Type: CWE-290
Base Score: 2.9
Vector: AV:A/AC:M/Au:N/C:N/I:N/A:P
Impact Score: 2.9
Exploitability Score: 5.5
Severity: LOW
Base Score: 6.1
Vector: CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:C/C:N/I:N/A:H
Impact Score: 4
Exploitability Score: 1.6
Severity: MEDIUM