VYPR

slaacd

by OpenBSD

CVEs (2)

  • CVE-2022-27882Mar 25, 2022
    risk 0.00cvss epss 0.02

    slaacd in OpenBSD 6.9 and 7.0 before 2022-03-22 has an integer signedness error and resultant heap-based buffer overflow triggerable by a crafted IPv6 router advertisement. NOTE: privilege separation and pledge can prevent exploitation.

  • CVE-2022-27881Mar 25, 2022
    risk 0.00cvss epss 0.02

    engine.c in slaacd in OpenBSD 6.9 and 7.0 before 2022-02-21 has a buffer overflow triggerable by an IPv6 router advertisement with more than seven nameservers. NOTE: privilege separation and pledge can prevent exploitation.