Multiple vulnerabilities have been found in OpenSLP, the worst of which allows remote attackers to cause a Denial of Service condition or other unspecified impacts.
| Package | net-libs/openslp on all architectures | 
|---|---|
| Affected versions | < 2.0.0-r4 | 
| Unaffected versions | >= 2.0.0-r4 | 
OpenSLP is an open-source implementation of Service Location Protocol (SLP).
Multiple vulnerabilities have been discovered in OpenSLP. Please review the CVE identifiers referenced below for details.
A remote attacker could possibly cause a Denial of Service condition or have other unspecified impacts.
There is no known workaround at this time.
All OpenSLP users should upgrade to the latest version:
# emerge --sync # emerge --ask --oneshot --verbose ">=net-libs/openslp-2.0.0-r4"