1
PublicDateAtUSN: 2015-08-07
2
Candidate: CVE-2015-5177
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5177
6
https://usn.ubuntu.com/usn/usn-2730-1
8
Double free vulnerability in the SLPDKnownDAAdd function in
9
slpd/slpd_knownda.c in OpenSLP 1.2.1 allows remote attackers to cause a
10
denial of service (crash) via a crafted package.
13
sbeattie> fixed sometime between 1.2.1 and 2.0
15
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=795429
16
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2015-5177
18
Discovered-by: Qinghao Tang
22
upstream: http://sourceforge.net/p/openslp/mercurial/ci/2bc15d0494f886d9c4fe342d23bc160605aea51d/
23
upstream_openslp-dfsg: released (2.0)
24
precise_openslp-dfsg: released (1.2.1-7.8ubuntu1.1)
25
trusty_openslp-dfsg: released (1.2.1-9ubuntu0.2)
26
vivid_openslp-dfsg: released (1.2.1-10ubuntu0.1)
27
devel_openslp-dfsg: released (1.2.1-10ubuntu1)