CVE-2015-8012: High severity centos lldpad vulnerability
Published Jan 28, 2020
·Updated
lldpd before 0.8.0 allows remote attackers to cause a denial of service (assertion failure and daemon crash) via a malformed packet.
Affected Software
1 affected component
Lldpd Project Lldpd<0.8.0
Remediation
Patch Available
Patch Available
Event History
Jan 28, 2020
CVE Published
via MITRE·06:15 PM
Data Sourced
via MITRE·06:15 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2015-8012.
2
What is the severity of CVE-2015-8012?
CVE-2015-8012 has a severity value of 7.5 (high).
3
What can an attacker do with CVE-2015-8012?
An attacker can cause a denial of service (assertion failure and daemon crash) by exploiting CVE-2015-8012.
4
How can I fix the vulnerability CVE-2015-8012?
To fix CVE-2015-8012, you should upgrade lldpd to version 0.8.0 or higher.
5
Where can I find more information about CVE-2015-8012?
You can find more information about CVE-2015-8012 at the following references: [Reference 1](http://www.openwall.com/lists/oss-security/2015/10/18/2), [Reference 2](http://www.openwall.com/lists/oss-security/2015/10/30/2), [Reference 3](https://github.com/vincentbernat/lldpd/commit/793526f8884455f43daecd0a2c46772388417a00).