CVE-2026-46433

lldpd is an implementation of IEEE 802.1ab (LLDP). Prior to version 1.0.22, lldpd_decode() in src/daemon/lldpd.c strips 802.1Q VLAN tags from received Ethernet frames by calling memmove() to shift the frame payload 4 bytes left. The third argument (byte count) is s - 2 * ETHER_ADDR_LEN but should be s - 2 * ETHER_ADDR_LEN - 4, causing a 4-byte heap buffer over-read past the malloc(h_mtu) allocation when the received frame size equals the interface MTU. This issue has been patched in version 1.0.22.
Configurations

Configuration 1 (hide)

cpe:2.3:a:lldpd_project:lldpd:*:*:*:*:*:*:*:*

History

23 Jul 2026, 09:10

Type Values Removed Values Added
Summary
  • (es) lldpd es una implementación de IEEE 802.1ab (LLDP). Antes de la versión 1.0.22, lldpd_decode() en src/daemon/lldpd.c elimina las etiquetas VLAN 802.1Q de las tramas Ethernet recibidas al llamar a memmove() para desplazar la carga útil de la trama 4 bytes a la izquierda. El tercer argumento (recuento de bytes) es s - 2 * ETHER_ADDR_LEN pero debería ser s - 2 * ETHER_ADDR_LEN - 4, causando una lectura excesiva de búfer de pila de 4 bytes más allá de la asignación malloc(h_mtu) cuando el tamaño de la trama recibida es igual a la MTU de la interfaz. Este problema ha sido parcheado en la versión 1.0.22.

11 Jun 2026, 18:29

Type Values Removed Values Added
CPE cpe:2.3:a:lldpd_project:lldpd:*:*:*:*:*:*:*:*
First Time Lldpd Project lldpd
Lldpd Project
References () https://github.com/lldpd/lldpd/commit/ca931be63a9cae0fcd8e9b6ae4e916d49f141cd6 - () https://github.com/lldpd/lldpd/commit/ca931be63a9cae0fcd8e9b6ae4e916d49f141cd6 - Patch
References () https://github.com/lldpd/lldpd/pull/787 - () https://github.com/lldpd/lldpd/pull/787 - Issue Tracking, Patch
References () https://github.com/lldpd/lldpd/releases/tag/1.0.22 - () https://github.com/lldpd/lldpd/releases/tag/1.0.22 - Product, Release Notes
References () https://github.com/lldpd/lldpd/security/advisories/GHSA-2g8p-2h3j-63m3 - () https://github.com/lldpd/lldpd/security/advisories/GHSA-2g8p-2h3j-63m3 - Vendor Advisory

09 Jun 2026, 23:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-09 23:16

Updated : 2026-07-23 09:10


NVD link : CVE-2026-46433

Mitre link : CVE-2026-46433

CVE.ORG link : CVE-2026-46433


JSON object : View

Products Affected

lldpd_project

  • lldpd
CWE
CWE-125

Out-of-bounds Read