Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Openslp

First CVE: Nov 17, 2003Active for: 23 yearsTotal CVEs: 9

OpenSLP is a service-location protocol implementation that, despite a narrow product footprint, occupies a prominent position in enterprise network infrastructure where it enables service discovery across distributed systems. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and have an elevated tendency toward confirmed in-the-wild exploitation, with frequent public exploit availability; the recurring weakness classes—including buffer-boundary violations, double-free conditions, and NULL-pointer dereferences—reflect the memory-safety hazards inherent to the protocol parser and service-lookup logic. Defenders should prioritize tracking and patching this vendor's disclosures where OpenSLP is deployed in network-accessible environments; live exploitation activity and severity counts are shown alongside this summary.

FAUCET AI Generated
9
Total CVEs
More Total CVEs than 91% of tracked vendors
1.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 76% of tracked vendors
7.4
Avg CVSS Score
Higher Avg CVSS Score than 56% of tracked vendors
11.1%
In CISA KEV
Higher KEV Rate than 100% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Openslp over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 17, 2003
22 years ago
Most Recent CVE
Dec 6, 2019
2,422 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (9 CVEs).

9 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2019-5544CRITICAL
OpenSLP as used in ESXi and the Horizon DaaS appliances has a heap overwrite issue. VMware has evaluated the severity of this issue to be in the Critical severity range with a maxi
Dec 6, 20199.897YESYES
CVE-2016-7567CRITICAL
Buffer overflow in the SLPFoldWhiteSpace function in common/slp_compare.c in OpenSLP 2.0 allows remote attackers to have unspecified impact via a crafted string.
Jan 23, 20179.848NOYES
CVE-2010-3609MEDIUM
The extension parser in slp_v2message.c in OpenSLP 1.2.1, and other versions before SVN revision 1647, as used in Service Location Protocol daemon (SLPD) in VMware ESX 4.0 and 4.1
Mar 11, 20115.036NOYES
CVE-2017-17833CRITICAL
OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-service or a remote code-execution vulnera
Apr 23, 20189.831NONO
CVE-2012-4428HIGH
openslp: SLPIntersectStringList()' Function has a DoS vulnerability
Dec 2, 20197.528NONO
CVE-2016-4912HIGH
The _xrealloc function in xlsp_xmalloc.c in OpenSLP 2.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a large number of crafted pa
Mar 27, 20177.526NONO
CVE-2015-5177HIGH
Double free vulnerability in the SLPDKnownDAAdd function in slpd/slpd_knownda.c in OpenSLP 1.2.1 allows remote attackers to cause a denial of service (crash) via a crafted package.
Oct 22, 20177.521NONO
CVE-2005-0769HIGH
Multiple buffer overflows in OpenSLP before 1.1.5 allow remote attackers to have an unknown impact via malformed SLP packets.
May 2, 20057.520NONO
CVE-2003-0875LOW
Symbolic link vulnerability in the slpd script slpd.all_init for OpenSLP before 1.0.11 allows local users to overwrite arbitrary files via the route.check temporary file.
Nov 17, 20032.111NONO
View all 9 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products9 CVEs
11%
11%
44%
33%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local0 (0.0%)
Network6 (66.7%)
Unknown3 (33.3%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low6 (66.7%)
High0 (0.0%)
Unknown3 (33.3%)
User Interaction
None6 (66.7%)
Unknown3 (33.3%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None6 (66.7%)
Unknown3 (33.3%)

Exploit Exposure

Signals from CVEs in this vendor scope (9 CVEs).

CISA KEV
1 CVE
11.1% of CVEs· 100th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
11.1% of CVEs· 96th percentile
ExploitDB
2 CVEs
22.2% of CVEs· 78th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Openslp.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Openslp — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Openslp's Products

View all 4 CNAs →

Top CWEs