Download
| Alert*
oval:org.secpod.oval:def:503435
The lldpad packages provide the Linux user space daemon and configuration tool for Intel"s Link Layer Discovery Protocol Agent with Enhanced Ethernet support. Security Fix: * lldptool: improper sanitization of shell-escape codes For more details about the security issue, including the impact, a CV ... oval:org.secpod.oval:def:66490 The lldpad packages provide the Linux user space daemon and configuration tool for Intel"s Link Layer Discovery Protocol Agent with Enhanced Ethernet support. Security Fix: * lldptool: improper sanitization of shell-escape codes For more details about the security issue, including the impact, a CV ... oval:org.secpod.oval:def:89045748 This update for open-lldp fixes the following issues: - CVE-2018-10932: Fixed an improper sanitization of shell-escape codes oval:org.secpod.oval:def:1504143 [1.0.1-13.git036e314] - After gating yml updates [1.0.1-12.git036e314] - Add support for DSCP selectors in APP TLVs [1.0.1-11.git036e314] - Fix memleak on TLV reception [1.0.1-10.git036e314] - Fix the OID display oval:org.secpod.oval:def:2000592 lldptool version 1.0.1 and older can print a raw, unsanitized attacker controlled buffer when mngAddr information is displayed. This may allow an attacker to inject shell control characters into the buffer and impact the behavior of the terminal. oval:org.secpod.oval:def:115407 This package contains the Linux user space daemon and configuration tool for Intel LLDP Agent with Enhanced Ethernet support for the Data Center. oval:org.secpod.oval:def:1700629 lldptool can print a raw, unsanitized attacker controlled buffer when mngAddr information is displayed. This may allow an attacker to inject shell control characters into the buffer and impact the behavior of the terminal oval:org.secpod.oval:def:115276 This package contains the Linux user space daemon and configuration tool for Intel LLDP Agent with Enhanced Ethernet support for the Data Center. oval:org.secpod.oval:def:2500046 The lldpad packages provide the Linux user space daemon and configuration tool for Intel"s Link Layer Discovery Protocol Agent with Enhanced Ethernet support. |