Summary:
Researchers have issued a high-severity alert concerning a vulnerability in the Service Location Protocol (SLP), identified as CVE-2023-29552, with a CVSS score of 7.8. Exploiting this flaw could lead to a denial-of-service (DoS) attack. Findings revealed that over 2,000 global organizations and more than 54,000 SLP instances, including those in VMware ESXi Hypervisor, Konica Minolta printers, Planex Routers, IBM Integrated Management Module (IMM), and SMC IPMI, were susceptible to DoS attacks.[/subscribe_to_unlock_form]
Summary:
Researchers have issued a high-severity alert concerning a vulnerability in the Service Location Protocol (SLP), identified as CVE-2023-29552, with a CVSS score of 7.8. Exploiting this flaw could lead to a denial-of-service (DoS) attack. Findings revealed that over 2,000 global organizations and more than 54,000 SLP instances, including those in VMware ESXi Hypervisor, Konica Minolta printers, Planex Routers, IBM Integrated Management Module (IMM), and SMC IPMI, were susceptible to DoS attacks.[emaillocker id="1283"]
The Service Location Protocol is instrumental in facilitating dynamic configurations for applications within local area networks, enabling systems to locate and communicate with each other. By maintaining a directory of available services such as file servers and printers, SLP ensures efficient networking. The specific CVE-2023-29552 vulnerability in VMware ESXi Hypervisor involves a reflective denial-of-service amplification. If exploited, this flaw allows attackers to execute a DoS attack with a high amplification factor. Such an attack has the potential to cause significant harm to the targeted network and server through a reflection DoS amplification method.
This advisory echoes the collaborative efforts of security researchers who unearthed the vulnerability, highlighting the importance of timely discovery and remediation to safeguard critical network protocols. With the prevalence of vulnerable SLP instances across diverse organizations and systems, the impact of a successful exploit could be widespread, making swift mitigation measures essential for overall cybersecurity resilience.
Recommendations:
References:
The following reports contain further technical details:
https://thehackernews.com/2023/11/cisa-alerts-high-severity-slp.html
[/emaillocker]