0.008 Low
EPSS
Percentile
81.8%
A use-after-free flaw in OpenSLP 1.x and 2.x baselines was discovered in the ProcessSrvRqst function. A failure to update a local pointer may lead to heap corruption. A remote attacker may be able to leverage this flaw to gain remote code execution.
bugzilla.redhat.com/show_bug.cgi?id=1572166
dumpco.re/blog/openslp-2.0.0-double-free