Description
lldptool version 1.0.1 and older can print a raw, unsanitized attacker controlled buffer when mngAddr information is displayed. This may allow an attacker to inject shell control characters into the buffer and impact the behavior of the terminal.
Published: 2018-08-21
Score: 4.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2018-2985 lldptool version 1.0.1 and older can print a raw, unsanitized attacker controlled buffer when mngAddr information is displayed. This may allow an attacker to inject shell control characters into the buffer and impact the behavior of the terminal.
History

Sun, 13 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00112}

epss

{'score': 0.00252}


Subscriptions

Intel Lldptool
Redhat Enterprise Linux
cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-05T07:54:35.554Z

Reserved: 2018-05-09T00:00:00.000Z

Link: CVE-2018-10932

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-08-21T18:29:00.263

Modified: 2024-11-21T03:42:20.177

Link: CVE-2018-10932

cve-icon Redhat

Severity : Low

Publid Date: 2018-08-10T16:01:00Z

Links: CVE-2018-10932 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses