CVE-2021-43612
published 2023-04-15CVE-2021-43612: In lldpd before 1.0.13, when decoding SONMP packets in the sonmp_decode function, it's possible to trigger an out-of-bounds heap read via short SONMP packets.
PriorityP337high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
1.14%
63.1th percentile
In lldpd before 1.0.13, when decoding SONMP packets in the sonmp_decode function, it's possible to trigger an out-of-bounds heap read via short SONMP packets.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | lldpd | < lldpd 1.0.13-1 (bookworm) | lldpd 1.0.13-1 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| lldpd_project | lldpd | < 1.0.13 | 1.0.13 |
| lldpd_project | lldpd | >= 0 < 1.0.11-1+deb11u1 | 1.0.11-1+deb11u1 |
| lldpd_project | lldpd | >= 0 < 1.0.13-1 | 1.0.13-1 |
| lldpd_project | lldpd | >= 0 < 1.0.13-1 | 1.0.13-1 |
| lldpd_project | lldpd | >= 0 < 1.0.13-1 | 1.0.13-1 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-x6gw-c547-cwm7: In lldpd before 1
ghsa_unreviewed·2023-04-16
CVE-2021-43612 [HIGH] CWE-787 GHSA-x6gw-c547-cwm7: In lldpd before 1
In lldpd before 1.0.13, when decoding SONMP packets in the sonmp_decode function, it's possible to trigger an out-of-bounds heap read via short SONMP packets.
OSV
CVE-2021-43612: In lldpd before 1
osv·2023-04-15·CVSS 7.5
CVE-2021-43612 [HIGH] CVE-2021-43612: In lldpd before 1
In lldpd before 1.0.13, when decoding SONMP packets in the sonmp_decode function, it's possible to trigger an out-of-bounds heap read via short SONMP packets.
Red Hat
lldpd: out-of-bounds read when decoding SONMP packets
vendor_redhat·2021-11-18·CVSS 7.5
CVE-2021-43612 [HIGH] CWE-125 lldpd: out-of-bounds read when decoding SONMP packets
lldpd: out-of-bounds read when decoding SONMP packets
In lldpd before 1.0.13, when decoding SONMP packets in the sonmp_decode function, it's possible to trigger an out-of-bounds heap read via short SONMP packets.
An out-of-bounds read vulnerability is present in lldpd. An attacker on the same network as the vulnerable system may use this vulnerability to leak memory data from the application or crash it by sending shorter SONMP packets than what is expected.
Statement: The Impact of this flaw has been set to Moderate, as it generally results in leak of data or, in some particular circumstances, in a crash of the application. Moreover, it requires an attacker to be adjacent to the vulnerable system.
Package: lldpd (Red Hat Enterprise Linux 8) - Will not fix
Debian
CVE-2021-43612: lldpd - In lldpd before 1.0.13, when decoding SONMP packets in the sonmp_decode function...
vendor_debian·2021·CVSS 7.5
CVE-2021-43612 [HIGH] CVE-2021-43612: lldpd - In lldpd before 1.0.13, when decoding SONMP packets in the sonmp_decode function...
In lldpd before 1.0.13, when decoding SONMP packets in the sonmp_decode function, it's possible to trigger an out-of-bounds heap read via short SONMP packets.
Scope: local
bookworm: resolved (fixed in 1.0.13-1)
bullseye: resolved (fixed in 1.0.11-1+deb11u1)
forky: resolved (fixed in 1.0.13-1)
sid: resolved (fixed in 1.0.13-1)
trixie: resolved (fixed in 1.0.13-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://github.com/lldpd/lldpd/commit/73d42680fce8598324364dbb31b9bc3b8320adf7https://github.com/lldpd/lldpd/compare/1.0.12...1.0.13https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3T5XHPOGIPWCRRPJUE6P3HVC5PTSD5JS/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JYA4AMJXCNF6UPFG36L2TPPT32C242SP/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SKQWHG2SZJZSGC7PXVDAEJYBN7ESDR7D/https://lldpd.github.io/security.htmlhttps://github.com/lldpd/lldpd/commit/73d42680fce8598324364dbb31b9bc3b8320adf7https://github.com/lldpd/lldpd/compare/1.0.12...1.0.13https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3T5XHPOGIPWCRRPJUE6P3HVC5PTSD5JS/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JYA4AMJXCNF6UPFG36L2TPPT32C242SP/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SKQWHG2SZJZSGC7PXVDAEJYBN7ESDR7D/https://lldpd.github.io/security.html
2023-04-15
Published