← Back

L2tpd

l2tpd

Vendor: L2tpd • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Gentoo
L2tpd
2L2tpd
Linux
Apr 16, 2026
Aug 6, 2004
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in write_packet in control.c for l2tpd may allow remote attackers to execute arbitrary code.
1L2tpd
1L2tpd
Apr 16, 2026
Sep 5, 2002
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Vulnerability in l2tpd 0.67 allows remote attackers to overwrite the vendor field via a long value in an attribute/value pair, possibly via a buffer overflow.
1L2tpd
1L2tpd
Apr 16, 2026
Sep 5, 2002
N/A· v4
N/A· v3
7.5 HIGH· v2
l2tpd 0.67 does not initialize the random number generator, which allows remote attackers to hijack sessions.