Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The _xrealloc function in xlsp_xmalloc.c in OpenSLP 2.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a large number of crafted packets, which triggers a memory allocation failure.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
OpenSLP 安全漏洞
Vulnerability Description
OpenSLP(Service Location Protocol,服务位置协议)是OpenSLP项目开发的一个IETF标准协议,用于在互联网内动态的服务发现。该协议支持通过服务的类型、属性在网络中查寻服务。 OpenSLP 2.0.0版本中的xlsp_xmalloc.c文件的‘_xrealloc’函数存在安全漏洞。远程攻击者可借助大量特制的数据包利用该漏洞造成拒绝服务(空指针逆向引用和崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A