CVE-2015-8011: Buffer Overflow
A buffer overflow was found in the lldpdecode function in daemon/protocols/lldp.c in lldpd. This flaw allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via vectors involving large management addresses and TLV boundaries. This threatens the system's confidentiality, integrity, and availability.
Other sources
Buffer overflow in the lldpdecode function in daemon/protocols/lldp.c in lldpd before 0.8.0 allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via vectors involving large management addresses and TLV boundaries.
Affected Software
Remediation
Patch Available
Patch Available
Information
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2015-8011?
CVE-2015-8011 is classified as a high severity vulnerability due to its potential to cause denial of service and arbitrary code execution.
How do I fix CVE-2015-8011?
To fix CVE-2015-8011, update to the latest version of affected software that has addressed this vulnerability.
Which software versions are affected by CVE-2015-8011?
CVE-2015-8011 affects various versions of openvswitch and lldpd prior to specific patched releases.
What type of vulnerability is CVE-2015-8011?
CVE-2015-8011 is a buffer overflow vulnerability that can be exploited by remote attackers.
What are the consequences of exploiting CVE-2015-8011?
Exploiting CVE-2015-8011 can lead to a daemon crash and possibly allow for arbitrary code execution.