OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-service or a remote code-execution vulnerability.

Project Subscriptions

Vendors Products
Canonical Subscribe
Ubuntu Linux Subscribe
Debian Linux Subscribe
Bm Nextscale Fan Power Controller Subscribe
Fan Power Controller Subscribe
Flex System Fc3171 8gb San Switch Subscribe
Flex System Fc3171 8gb San Switch Firmware Subscribe
Storage N3310 Subscribe
Storage N3310 Firmware Subscribe
Storage N4610 Subscribe
Storage N4610 Firmware Subscribe
Thinkserver Rd340 Subscribe
Thinkserver Rd340 Firmware Subscribe
Thinkserver Rd350 Subscribe
Thinkserver Rd350 Firmware Subscribe
Thinkserver Rd350g Subscribe
Thinkserver Rd350g Firmware Subscribe
Thinkserver Rd350x Subscribe
Thinkserver Rd350x Firmware Subscribe
Thinkserver Rd440 Subscribe
Thinkserver Rd440 Firmware Subscribe
Thinkserver Rd450 Subscribe
Thinkserver Rd450 Firmware Subscribe
Thinkserver Rd450x Subscribe
Thinkserver Rd450x Firmware Subscribe
Thinkserver Rd540 Subscribe
Thinkserver Rd540 Firmware Subscribe
Thinkserver Rd550 Subscribe
Thinkserver Rd550 Firmware Subscribe
Thinkserver Rd640 Subscribe
Thinkserver Rd640 Firmware Subscribe
Thinkserver Rd650 Subscribe
Thinkserver Rd650 Firmware Subscribe
Thinkserver Rq750 Subscribe
Thinkserver Rq750 Firmware Subscribe
Thinkserver Rs160 Subscribe
Thinkserver Rs160 Firmware Subscribe
Thinkserver Sd350 Subscribe
Thinkserver Sd350 Firmware Subscribe
Thinkserver Td340 Subscribe
Thinkserver Td340 Firmware Subscribe
Thinkserver Td350 Subscribe
Thinkserver Td350 Firmware Subscribe
Thinkserver Ts460 Subscribe
Thinkserver Ts460 Firmware Subscribe
Thinksystem Hr630x Subscribe
Thinksystem Hr630x Firmware Subscribe
Thinksystem Hr650x Subscribe
Thinksystem Hr650x Firmware Subscribe
Thinksystem Sr630 Subscribe
Thinksystem Sr630 Firmware Subscribe
Xclarity Administrator Subscribe
Openslp Subscribe
Openslp Subscribe
Enterprise Linux Subscribe
Enterprise Linux Desktop Subscribe
Enterprise Linux Server Subscribe
Enterprise Linux Server Aus Subscribe
Enterprise Linux Server Eus Subscribe
Enterprise Linux Server Tus Subscribe
Enterprise Linux Workstation Subscribe
Advisories
Source ID Title
Debian DLA Debian DLA DLA-1364-1 openslp-dfsg security update
Debian DLA Debian DLA DLA-2025-1 openslp-dfsg security update
EUVD EUVD EUVD-2017-8983 OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-service or a remote code-execution vulnerability.
Ubuntu USN Ubuntu USN USN-3708-1 OpenSLP vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T21:06:48.960Z

Reserved: 2017-12-22T00:00:00

Link: CVE-2017-17833

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-04-23T18:29:00.663

Modified: 2024-11-21T03:18:46.777

Link: CVE-2017-17833

cve-icon Redhat

Severity : Important

Publid Date: 2018-04-19T00:00:00Z

Links: CVE-2017-17833 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses