In OpenBSD 7.3 before errata 016, npppd(8) could crash by a l2tp message which has an AVP (Attribute-Value Pair) with wrong length.
CVSS
No CVSS.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-03-01 17:15
Updated : 2024-03-01 22:22
NVD link : CVE-2023-52557
Mitre link : CVE-2023-52557
CVE.ORG link : CVE-2023-52557
JSON object : View
Products Affected
No product.
CWE
CWE-131
Incorrect Calculation of Buffer Size