The PPP implementation of MPD before 5.9 allows a remote attacker who can send specifically crafted PPP authentication message to cause the daemon to read beyond allocated memory buffer, which would result in a denial of service condition.
| Software | From | Fixed in |
|---|---|---|
| mpd_project / mpd | - | 5.9 |
| stormshield / stormshield_network_security | 4.0.0 | 4.3.17 |
| stormshield / stormshield_network_security | 4.4.0 | 4.4.0.x |