Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Yuguang Cai

Researcher fromQihoo 360
#36771of 53,633
7.5Total CVSS
Vulnerabilities · 1
PT-2017-8606
7.5
2016-06-10
Openslp · Openslp · CVE-2016-4912
**Name of the Vulnerable Software and Affected Versions** OpenSLP version 2.0.0 **Description** The issue allows remote attackers to cause a denial of service, resulting in a crash due to a NULL pointer dereference. This is triggered by a memory allocation failure when handling a large number of crafted packets. **Recommendations** For OpenSLP version 2.0.0, consider implementing packet filtering or rate limiting to reduce the risk of exploitation until a patch is available. At the moment, there is no information about a newer version that contains a fix for this issue.