Buffer overflow in the cspsfprecvfp in cspsfp.c in the libcsp library v1.4 and earlier allows hostile components with network access to the SFP underlying network layers to execute arbitrary code via specially crafted SFP packets.
{ "binaries": [ { "binary_version": "1.4+fdd49b7+dfsg-3build1", "binary_name": "libcsp-dev" }, { "binary_version": "1.4+fdd49b7+dfsg-3build1", "binary_name": "libcsp-source" }, { "binary_version": "1.4+fdd49b7+dfsg-3build1", "binary_name": "libcsp1" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-8597.json"