In OpenBSD 7.3 before errata 016, npppd(8) could crash by a l2tp message which has an AVP (Attribute-Value Pair) with wrong length.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisa-cg

Published: 2024-03-01T16:14:56.065Z

Updated: 2024-08-02T23:03:20.647Z

Reserved: 2024-03-01T16:04:51.307Z

Link: CVE-2023-52557

cve-icon Vulnrichment

Updated: 2024-08-02T23:03:20.647Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-03-01T17:15:07.257

Modified: 2024-08-01T13:45:39.150

Link: CVE-2023-52557

cve-icon Redhat

No data.