The _xrealloc function in xlsp_xmalloc.c in OpenSLP 2.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a large number of crafted packets, which triggers a memory allocation failure.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1329295 | issue tracking exploit vdb entry third party advisory |
https://security.gentoo.org/glsa/201707-05 | vendor advisory |
http://www.securitytracker.com/id/1035916 | vdb entry third party advisory |
http://www.openwall.com/lists/oss-security/2016/05/18/6 | third party advisory mailing list |