PatchSiren

Openslp CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL Openslp CVE published 2017-01-23

CVE-2016-7567

CVE-2016-7567 is a critical memory-corruption flaw in OpenSLP 2.0.0. NVD describes it as a buffer overflow in the SLPFoldWhiteSpace function in common/slp_compare.c, with remote attackers able to trigger unspecified impact using a crafted string. Because the issue is network-reachable and rated CVSS 9.8, it should be treated as an urgent patching priority for any environment that still runs the affected O [truncated]