Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-2949

Опубликовано: 19 авг. 2010
Источник: redhat
CVSS2: 1.8
EPSS Низкий

Описание

bgpd in Quagga before 0.99.17 does not properly parse AS paths, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an unknown AS type in an AS path attribute in a BGP UPDATE message.

Отчет

Not vulnerable. This issue did not affect the versions of quagga package as shipped with Red Hat Enterprise Linux 3, 4, or 5, as these versions do not support 4 byte AS numbers (AS4 support) yet.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 3quaggaNot affected
Red Hat Enterprise Linux 4quaggaNot affected
Red Hat Enterprise Linux 5quaggaNot affected
Red Hat Enterprise Linux 6quaggaFixedRHSA-2010:094506.12.2010

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=626795(bgpd): DoS (crash) while processing certain BGP update AS path messages

EPSS

Процентиль: 89%
0.04638
Низкий

1.8 Low

CVSS2

Связанные уязвимости

ubuntu
почти 15 лет назад

bgpd in Quagga before 0.99.17 does not properly parse AS paths, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an unknown AS type in an AS path attribute in a BGP UPDATE message.

nvd
почти 15 лет назад

bgpd in Quagga before 0.99.17 does not properly parse AS paths, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an unknown AS type in an AS path attribute in a BGP UPDATE message.

debian
почти 15 лет назад

bgpd in Quagga before 0.99.17 does not properly parse AS paths, which ...

github
около 3 лет назад

bgpd in Quagga before 0.99.17 does not properly parse AS paths, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an unknown AS type in an AS path attribute in a BGP UPDATE message.

oracle-oval
больше 14 лет назад

ELSA-2010-0945: quagga security update (MODERATE)

EPSS

Процентиль: 89%
0.04638
Низкий

1.8 Low

CVSS2