openslp records
9 published records for vendor openslp.
Researcher profile
- Entered KEV
- 1 · 11.1%
- Weaponized
- 1 · 11.1%
- Pre-auth RCE
- 0
- With a fix record
- 77.8%
- Median publish → KEV
- 698 days
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-125 Out-of-bounds Read1
- CWE-415 Double Free1
- CWE-476 NULL Pointer Dereference1
- CWE-787 Out-of-bounds Write1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
9 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
98Now | CVE-2019-5544Weaponized | OpenSLP as used in ESXi and the Horizon DaaS appliances has a heap overwrite issue.openslp · openslp · CWE-787 | Critical9.8 | KEV | 97.3% | Dec 6, 2019 |
43Plan | CVE-2016-7567Proof of concept | Buffer overflow in the SLPFoldWhiteSpace function in common/slp_compare.c in OpenSLP 2.0 allows remote attackers to have unspecified impact openslp · openslp · CWE-119 | Critical9.8 | — | 12.5% | Jan 23, 2017 |
40Plan | CVE-2017-17833No exploit | OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-seopenslp · openslp · CWE-119 | Critical9.8 | — | 3.8% | Apr 23, 2018 |
33Monitor | CVE-2012-4428No exploit | openslp: SLPIntersectStringList()' Function has a DoS vulnerabilityopenslp · openslp · CWE-125 | High7.5 | — | 9.6% | Dec 2, 2019 |
32Monitor | CVE-2015-5177No exploit | Double free vulnerability in the SLPDKnownDAAdd function in slpd/slpd_knownda.c in OpenSLP 1.2.1 allows remote attackers to cause a denial oopenslp · openslp · CWE-415 | High7.5 | — | 6.3% | Oct 22, 2017 |
32Monitor | CVE-2016-4912No exploit | The _xrealloc function in xlsp_xmalloc.c in OpenSLP 2.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference andopenslp · openslp · CWE-476 | High7.5 | — | 5.4% | Mar 27, 2017 |
31Monitor | CVE-2005-0769No exploit | Multiple buffer overflows in OpenSLP before 1.1.5 allow remote attackers to have an unknown impact via malformed SLP packets.openslp · openslp | High7.5 | — | 2.6% | May 2, 2005 |
25Monitor | CVE-2010-3609Proof of concept | The extension parser in slp_v2message.c in OpenSLP 1.2.1, and other versions before SVN revision 1647, as used in Service Location Protocol openslp · openslp | Medium5.0 | — | 17.2% | Mar 11, 2011 |
8Monitor | CVE-2003-0875No exploit | Symbolic link vulnerability in the slpd script slpd.all_init for OpenSLP before 1.0.11 allows local users to overwrite arbitrary files via topenslp · openslp | Low2.1 | — | 0.3% | Nov 17, 2003 |
- CVE-2019-554498Now
OpenSLP as used in ESXi and the Horizon DaaS appliances has a heap overwrite issue.
CriticalCVSS 9.8KEVWeaponizedEPSS 97%openslp · openslpDec 6, 2019
- CVE-2016-756743Plan
Buffer overflow in the SLPFoldWhiteSpace function in common/slp_compare.c in OpenSLP 2.0 allows remote attackers to have unspecified impact
CriticalCVSS 9.8Proof of conceptEPSS 12%openslp · openslpJan 23, 2017
- CVE-2017-1783340Plan
OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-se
CriticalCVSS 9.8No exploitEPSS 4%openslp · openslpApr 23, 2018
- CVE-2012-442833Monitor
openslp: SLPIntersectStringList()' Function has a DoS vulnerability
HighCVSS 7.5No exploitEPSS 10%openslp · openslpDec 2, 2019
- CVE-2015-517732Monitor
Double free vulnerability in the SLPDKnownDAAdd function in slpd/slpd_knownda.c in OpenSLP 1.2.1 allows remote attackers to cause a denial o
HighCVSS 7.5No exploitEPSS 6%openslp · openslpOct 22, 2017
- CVE-2016-491232Monitor
The _xrealloc function in xlsp_xmalloc.c in OpenSLP 2.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and
HighCVSS 7.5No exploitEPSS 5%openslp · openslpMar 27, 2017
- CVE-2005-076931Monitor
Multiple buffer overflows in OpenSLP before 1.1.5 allow remote attackers to have an unknown impact via malformed SLP packets.
HighCVSS 7.5No exploitEPSS 3%openslp · openslpMay 2, 2005
- CVE-2010-360925Monitor
The extension parser in slp_v2message.c in OpenSLP 1.2.1, and other versions before SVN revision 1647, as used in Service Location Protocol
MediumCVSS 5.0Proof of conceptEPSS 17%openslp · openslpMar 11, 2011
- CVE-2003-08758Monitor
Symbolic link vulnerability in the slpd script slpd.all_init for OpenSLP before 1.0.11 allows local users to overwrite arbitrary files via t
LowCVSS 2.1No exploitEPSS 0%openslp · openslpNov 17, 2003