Vulnerabilities (CVE)

Filtered by vendor Openslp Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-0769 1 Openslp 1 Openslp 2018-10-19 7.5 HIGH N/A
Multiple buffer overflows in OpenSLP before 1.1.5 allow remote attackers to have an unknown impact via malformed SLP packets.
CVE-2010-3609 2 Openslp, Vmware 3 Openslp, Esx, Esxi 2018-10-10 5.0 MEDIUM N/A
The extension parser in slp_v2message.c in OpenSLP 1.2.1, and other versions before SVN revision 1647, as used in Service Location Protocol daemon (SLPD) in VMware ESX 4.0 and 4.1 and ESXi 4.0 and 4.1, allows remote attackers to cause a denial of service (infinite loop) via a packet with a "next extension offset" that references this extension or a previous extension. NOTE: some of these details are obtained from third party information.
CVE-2003-0875 1 Openslp 1 Openslp 2016-10-18 2.1 LOW N/A
Symbolic link vulnerability in the slpd script slpd.all_init for OpenSLP before 1.0.11 allows local users to overwrite arbitrary files via the route.check temporary file.