This page aggregates publicly disclosed CVE and security risk information related to l2tpd, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | 概要 | ソース | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|---|
| CVE-2004-0649 | Buffer overflow in write_packet in control.c for l2tpd may allow remote attackers to execute arbitrary code. | [email protected] | 10.0 | 5.48% | 2004-08-06 | 2026-04-16 |
| CVE-2002-0873 | Vulnerability in l2tpd 0.67 allows remote attackers to overwrite the vendor field via a long value in an attribute/value pair, possibly via a buffer overflow. | [email protected] | 5.0 | 0.51% | 2002-09-05 | 2026-04-16 |
| CVE-2002-0872 | l2tpd 0.67 does not initialize the random number generator, which allows remote attackers to hijack sessions. | [email protected] | 7.5 | 0.72% | 2002-09-05 | 2026-04-16 |