CVE-2016-4912 PUBLISHED CVSS 5 MEDIUM

The _xrealloc function in xlsp_xmalloc.c in OpenSLP 2.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a large number of crafted packets, which triggers a memory allocation failure.

EPSS 0.78% · 73.6th percentile

Risk Scores

CVSS v2.0
5
EPSS Score
0.78%
73.6th percentile

Affected Products

VendorProductVersions
n/an/an/a
openslpopenslp2.0.0

Timeline

References

Open in Interactive Console →