CVE-2015-8011
Summary
| CVE | CVE-2015-8011 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-01-28 19:15:00 UTC |
| Updated | 2023-11-07 02:28:00 UTC |
| Description | Buffer overflow in the lldp_decode function in daemon/protocols/lldp.c in lldpd before 0.8.0 allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via vectors involving large management addresses and TLV boundaries. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Debian -- Security Information -- DSA-4836-1 openvswitch |
DEBIAN |
www.debian.org |
Third Party Advisory |
| cert-portal.siemens.com/productcert/pdf/ssa-941426.pdf |
CONFIRM |
cert-portal.siemens.com |
|
| [SECURITY] [DLA 2571-1] openvswitch security update |
MLIST |
lists.debian.org |
Mailing List, Third Party Advisory |
| oss-security - CVE request: lldpd crash in lldp_decode due large management address |
MISC |
www.openwall.com |
Mailing List, Patch, Third Party Advisory |
| [SECURITY] Fedora 33 Update: dpdk-20.11-1.fc33 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 33 Update: dpdk-20.11-1.fc33 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
Third Party Advisory |
| lldp: fix a buffer overflow when handling management address TLV · vincentbernat/lldpd@dd4f16e · GitHub |
MISC |
github.com |
Patch, Third Party Advisory |
| oss-security - Re: CVE request: lldpd crash in lldp_decode due large management address |
MISC |
www.openwall.com |
Mailing List, Patch, Third Party Advisory |
| Siemens Industrial Products LLDP | CISA |
MISC |
us-cert.cisa.gov |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 239168 Red Hat Update for openvswitch2.11 and ovn2.11 (RHSA-2021:0931)
- 239373 Red Hat Update for Red Hat OpenStack Platform 10.0 (openvswitch) (RHSA-2021:2205)
- 281603 Fedora Security Update for dpdk (FEDORA-2021-fba11d37ee)
- 501655 Alpine Linux Security Update for openvswitch
- 505197 Alpine Linux Security Update for openvswitch
- 591139 Siemens Industrial Products LLDP (Update D) Multiple Vulnerabilities (icsa-21-194-07, SSA-941426)
- 770043 Red Hat OpenShift Container Platform 4.6.9 Packages and Security Update (RHSA-2020:5615)