Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The extension parser in slp_v2message.c in OpenSLP 1.2.1, and other versions before SVN revision 1647, as used in Service Location Protocol daemon (SLPD) in VMware ESX 4.0 and 4.1 and ESXi 4.0 and 4.1, allows remote attackers to cause a denial of service (infinite loop) via a packet with a "next extension offset" that references this extension or a previous extension. NOTE: some of these details are obtained from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
VMware多个产品SLPD OpenSLP拒绝服务漏洞
Vulnerability Description
VMWare是一款虚拟PC软件,允许在一台机器上同时运行两个或多个Windows、DOS、LINUX系统。 在VMware ESX 4.0和4.1版本,及ESXi 4.0和4.1版本的Service Location Protocol守护进程(SLPD)中使用的OpenSLP 1.2.1及其他版本的slp_v2message.c中的扩展解析器中存在拒绝服务漏洞。远程攻击者可借助带有“next extension offset”的包(引用了该扩展或以前的扩展)导致拒绝服务(无限循环)。
CVSS Information
N/A
Vulnerability Type
N/A