CVE-2011-3601

Buffer overflow in the process_ra function in the router advertisement daemon (radvd) before 1.8.2 allows remote attackers to execute arbitrary code or cause a denial of service (crash) via a negative value in a label_len value.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 82%
VendorProductVersion
litechrouter_advertisement_daemon
𝑥
≤ 1.8.1
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
radvd
bullseye
1:2.18-3
fixed
squeeze
not-affected
lenny
not-affected
bookworm
1:2.19-1
fixed
sid
1:2.19-2.1
fixed
trixie
1:2.19-2.1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
radvd
oneiric
Fixed 1:1.8-1ubuntu0.1
released
natty
Fixed 1:1.7-1ubuntu0.1
released
maverick
not-affected
lucid
not-affected
hardy
ignored