ZeroHour

CVE-2018-10932

CVSS 3.0
4.3 medium
EPSS
1%p62
Published
()
Modified
Description

lldptool version 1.0.1 and older can print a raw, unsanitized attacker controlled buffer when mngAddr information is displayed. This may allow an attacker to inject shell control characters into the buffer and impact the behavior of the terminal.

Vendors
intel
Products
lldptool
Weakness
CWE-117, CWE-119
Vector
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.