6.8
CVSSv2

CVE-2015-8011

Published: 28/01/2020 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the lldp_decode function in daemon/protocols/lldp.c in lldpd prior to 0.8.0 allows remote malicious users to cause a denial of service (daemon crash) and possibly execute arbitrary code via vectors involving large management addresses and TLV boundaries.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

lldpd project lldpd

debian debian linux 9.0

debian debian linux 10.0

fedoraproject fedora 33

Vendor Advisories

Debian Bug report logs - #980132 openvswitch: CVE-2020-27827 Package: src:openvswitch; Maintainer for src:openvswitch is Debian OpenStack <team+openstack@trackerdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Thu, 14 Jan 2021 21:42:01 UTC Severity: grave Tags: security, upstream Found in ve ...
Two vulnerabilities were discovered in the LLPD implementation of Open vSwitch, a software-based Ethernet virtual switch, which could result in denial of service For the stable distribution (buster), these problems have been fixed in version 2106+ds1-0+deb10u1 We recommend that you upgrade your openvswitch packages For the detailed security st ...
Synopsis Important: Red Hat Virtualization security, bug fix, and enhancement update Type/Severity Security Advisory: Important Topic An update for openvswitch211, ovn211, redhat-release-virtualization-host, and redhat-virtualization-host is now available for Red Hat Virtualization 4 for Red Hat Enterpris ...
Synopsis Important: OpenShift Container Platform 469 packages and security update Type/Severity Security Advisory: Important Topic Red Hat OpenShift Container Platform release 469 is now available with updates to packages and images that fix several bugsThis release includes a security update for opens ...
Synopsis Moderate: OpenShift Container Platform 468 security and bug fix update Type/Severity Security Advisory: Moderate Topic Red Hat OpenShift Container Platform release 468 is now available with updates to packages and images that fix several bugsThis release includes a security update for openshif ...
Synopsis Moderate: OpenShift Container Platform 4523 security and bug fix update Type/Severity Security Advisory: Moderate Topic Red Hat OpenShift Container Platform release 4523 is now available with updates to packages and images that fix several bugsThis release includes a security update for Kubern ...
Synopsis Important: OpenShift Container Platform 4616 security and bug fix update Type/Severity Security Advisory: Important Topic Red Hat OpenShift Container Platform release 4616 is now available withupdates to packages and images that fix several bugsRed Hat Product Security has rated this update as ...
Synopsis Important: Red Hat Virtualization security, bug fix, and enhancement update Type/Severity Security Advisory: Important Topic An update for cockpit-ovirt, redhat-release-virtualization-host, redhat-virtualization-host, and v2v-conversion-host is now available for Red Hat Virtualization 4 for Red Hat ...
A buffer overflow in the lldp_decode function in daemon/protocols/lldpc in lldpd before 080 allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via vectors involving large management addresses and TLV boundaries ...