PT-2024-14627 · Openbsd · Openbsd

CVE-2023-52557

·

Published

2024-03-01

·

Updated

2025-10-10

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions OpenBSD version 7.3
Description The issue is related to a crash in npppd(8) caused by an L2TP message containing an AVP (Attribute-Value Pair) with an incorrect length.
Recommendations For OpenBSD version 7.3, apply errata 016 to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-52557

Affected Products

Openbsd