Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Lldpd Project

First CVE: Jan 28, 2020Active for: 6 yearsTotal CVEs: 6

Lldpd is a lightweight link-layer discovery protocol daemon widely embedded in network switches, routers, and other infrastructure devices, where it handles parsing of untrusted network packets at a protocol parsing layer. Vulnerabilities in this vendor skew strongly toward critical-severity outcomes and cluster around memory-safety weaknesses including out-of-bounds reads and writes, buffer overflows, and resource-exhaustion flaws that are characteristic of C-based network parsers handling low-level frame data. Defenders should treat this vendor's advisories as high-priority for any switch or router fleet that runs the service, as the proximity to the data plane and the parsing complexity of link-layer protocols create sustained exposure to serious flaws; live severity and exploitation counts are shown alongside this summary.

FAUCET AI Generated
6
Total CVEs
More Total CVEs than 86% of tracked vendors
1.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 76% of tracked vendors
8.1
Avg CVSS Score
Higher Avg CVSS Score than 78% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Lldpd Project over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jan 28, 2020
6 years ago
Most Recent CVE
Jun 9, 2026
45 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (6 CVEs).

6 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2023-41910CRITICAL
An issue was discovered in lldpd before 1.0.17. By crafting a CDP PDU packet with specific CDP_TLV_ADDRESSES TLVs, a malicious actor can remotely force the lldpd daemon to perform
Sep 5, 20239.830NONO
CVE-2015-8011CRITICAL
Buffer overflow in the lldp_decode function in daemon/protocols/lldp.c in lldpd before 0.8.0 allows remote attackers to cause a denial of service (daemon crash) and possibly execut
Jan 28, 20209.828NONO
CVE-2026-46433MEDIUM
lldpd is an implementation of IEEE 802.1ab (LLDP). Prior to version 1.0.22, lldpd_decode() in src/daemon/lldpd.c strips 802.1Q VLAN tags from received Ethernet frames by calling me
Jun 9, 20266.527NONO
CVE-2021-43612HIGH
In lldpd before 1.0.13, when decoding SONMP packets in the sonmp_decode function, it's possible to trigger an out-of-bounds heap read via short SONMP packets.
Apr 15, 20237.525NONO
CVE-2020-27827HIGH
A flaw was found in multiple versions of OpenvSwitch. Specially crafted LLDP packets can cause memory to be lost when allocating data to handle specific optional TLVs, potentially
Mar 18, 20217.525NONO
CVE-2015-8012HIGH
lldpd before 0.8.0 allows remote attackers to cause a denial of service (assertion failure and daemon crash) via a malformed packet.
Jan 28, 20207.521NONO
View all 6 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products6 CVEs
17%
50%
33%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network5 (83.3%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (16.7%)
Attack Complexity
Low6 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None6 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None6 (100.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (6 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Lldpd Project.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Lldpd Project — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Lldpd Project's Products

View all 3 CNAs →

Top CWEs