The lookupProviders function in providerMgr.c in sblim-sfcb 1.3.4 and 1.3.18 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an empty className in a packet.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Opensuse | Opensuse | 13.1 (including) | 13.1 (including) |
Opensuse | Opensuse | 13.2 (including) | 13.2 (including) |
Sblim-sfcb | Ubuntu | artful | * |
Sblim-sfcb | Ubuntu | precise | * |
Sblim-sfcb | Ubuntu | upstream | * |
Sblim-sfcb | Ubuntu | vivid | * |
Sblim-sfcb | Ubuntu | wily | * |
Sblim-sfcb | Ubuntu | yakkety | * |
Sblim-sfcb | Ubuntu | zesty | * |