7.5
CVSSv2

CVE-2011-3601

Published: 17/02/2014 Updated: 21/02/2014
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the process_ra function in the router advertisement daemon (radvd) prior to 1.8.2 allows remote malicious users to execute arbitrary code or cause a denial of service (crash) via a negative value in a label_len value.

Vulnerable Product Search on Vulmon Subscribe to Product

litech router advertisement daemon

Vendor Advisories

Debian Bug report logs - #644614 multiple security issues in radvd 16 Package: radvd; Maintainer for radvd is Geert Stappers <stappers@debianorg>; Source for radvd is src:radvd (PTS, buildd, popcon) Reported by: Yves-Alexis Perez <corsac@debianorg> Date: Fri, 7 Oct 2011 11:36:26 UTC Severity: grave Tags: securit ...
radvd could be made to crash or overwrite certain files if it received specially crafted network traffic ...