Format string vulnerabilities in the logging routines for dynamic DNS code (print.c) of ISC DHCP daemon (DHCPD) 3 to 3.0.1rc8, with the NSUPDATE option enabled, allow remote malicious DNS servers to execute arbitrary code via format strings in a DNS server response.
                
                    Exploit prediction scoring system (EPSS) score
                    
                        
                            EPSS Score 0.377
                        
                    
                    
                        
                            EPSS Ranking 97.0%