Kea DHCP: Local Vulnerabilities in many Linux and BSD Distributions

5 points by fro


symgryph
Comment removed by author
sknebel

I saw some discussion around

Whether DHCP leases are private data is debatable.

I think an interesting point is that for many networks the DHCP server is the one component that almost accidentally logs which devices (and thus which users) are physically present. Sometimes that’s even used intentionally, and if you truly tried to monitor it you have a bunch of other options too, but DHCP is just by default everywhere.