CVE-2023-29552

HIGH KEV RANSOMWARE

SLP - Denial of Service

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2023-29552 is actively exploited and listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, added November 8, 2023, with confirmed use in ransomware campaigns. EIP tracks 1 public exploit from researchers including milo2012.

AI-analyzed exploit summary This repository contains functional exploit code for CVE-2023-29552, a vulnerability in Service Location Protocol (SLP) implementations that allows for Denial of Service (DoS) attacks. The provided scripts (`check_slp.py` and `slpload.py`) demonstrate the ability to send crafted SLP service requests and register services, which can lead to service disruption.

Description

The Service Location Protocol (SLP, RFC 2608) allows an unauthenticated, remote attacker to register arbitrary services. This could allow the attacker to use spoofed UDP traffic to conduct a denial-of-service attack with a significant amplification factor.

Exploits (1)

gitlab WORKING POC
by milo2012 · dos
https://gitlab.com/milo2012/cve-2023-29552

This repository contains functional exploit code for CVE-2023-29552, a vulnerability in Service Location Protocol (SLP) implementations that allows for Denial of Service (DoS) attacks. The provided scripts (`check_slp.py` and `slpload.py`) demonstrate the ability to send crafted SLP service requests and register services, which can lead to service disruption.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Moderate
Reliability
Reliable
Target: Service Location Protocol (SLP) implementations (e.g., OpenSLP)
No auth needed
Prerequisites: Network access to the target SLP service · Python environment with required dependencies (e.g., Scapy)
devstral-2 · analyzed Feb 23, 2026 Full analysis →

Scores

CVSS v3 7.5
EPSS 0.6587
EPSS Percentile 99.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation active
Automatable yes
Technical Impact partial

Details

CISA KEV 2023-11-08
VulnCheck KEV 2023-04-25
InTheWild.io 2023-11-08
ENISA EUVD EUVD-2023-33094
Ransomware Use Confirmed
Status published
Products (7)
netapp/smi-s_provider
service_location_protocol_project/service_location_protocol
suse/linux_enterprise_server 11
suse/linux_enterprise_server 12 (2 CPE variants)
suse/linux_enterprise_server 15 (2 CPE variants)
suse/manager_server
vmware/esxi < 7.0
Published Apr 25, 2023
KEV Added Nov 08, 2023
Tracked Since Feb 18, 2026