#VU80933 Input validation error in OpenBSD
Published: September 20, 2023
OpenBSD
OpenBSD
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input within the npppd(8) daemon. A remote attacker can send a specially crafted L2TP message with a wrong AVP length to the server and perform a denial of service (DoS) attack.