Vulnerabilities (CVE)

Vendor filter

Openslp Subscribe

Product filter

Openslp Subscribe


7 total CVE
CVE Vendors Products Updated CVSS
CVE-2017-17833 5 Openslp, Debian, Lenovo and 2 more 23 Openslp, Debian Linux, Xclarity Administrator and 20 more 2019-04-22 7.5
OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-service or a remote code-execution vulnerability.
CVE-2016-7567 1 Openslp 1 Openslp 2018-11-10 7.5
Buffer overflow in the SLPFoldWhiteSpace function in common/slp_compare.c in OpenSLP 2.0 allows remote attackers to have unspecified impact via a crafted string.
CVE-2005-0769 1 Openslp 1 Openslp 2018-10-19 7.5
Multiple buffer overflows in OpenSLP before 1.1.5 allow remote attackers to have an unknown impact via malformed SLP packets.
CVE-2010-3609 2 Vmware, Openslp 3 Esxi, Openslp, Esx 2018-10-10 5.0
The extension parser in slp_v2message.c in OpenSLP 1.2.1, and other versions before SVN revision 1647, as used in Service Location Protocol daemon (SLPD) in VMware ESX 4.0 and 4.1 and ESXi 4.0 and 4.1, allows remote attackers to cause a denial of...
CVE-2015-5177 2 Openslp, Debian 2 Openslp, Debian Linux 2017-11-07 5.0
Double free vulnerability in the SLPDKnownDAAdd function in slpd/slpd_knownda.c in OpenSLP 1.2.1 allows remote attackers to cause a denial of service (crash) via a crafted package.
CVE-2016-4912 1 Openslp 1 Openslp 2017-07-11 5.0
The _xrealloc function in xlsp_xmalloc.c in OpenSLP 2.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a large number of crafted packets, which triggers a memory allocation failure.
CVE-2003-0875 1 Openslp 1 Openslp 2016-10-18 2.1
Symbolic link vulnerability in the slpd script slpd.all_init for OpenSLP before 1.0.11 allows local users to overwrite arbitrary files via the route.check temporary file.