Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-1995

Опубликовано: 12 апр. 2007
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.3

Описание

bgpd/bgp_attr.c in Quagga 0.98.6 and earlier, and 0.99.6 and earlier 0.99 versions, does not validate length values in the MP_REACH_NLRI and MP_UNREACH_NLRI attributes, which allows remote attackers to cause a denial of service (daemon crash or exit) via crafted UPDATE messages that trigger an assertion error or out of bounds read.

РелизСтатусПримечание
dapper

released

0.99.2-1ubuntu3.3
devel

released

0.99.9-1ubuntu1
edgy

released

0.99.4-4ubuntu1.2
feisty

released

0.99.6-2ubuntu3.2
upstream

needs-triage

Показывать по

EPSS

Процентиль: 77%
0.01103
Низкий

6.3 Medium

CVSS2

Связанные уязвимости

redhat
больше 18 лет назад

bgpd/bgp_attr.c in Quagga 0.98.6 and earlier, and 0.99.6 and earlier 0.99 versions, does not validate length values in the MP_REACH_NLRI and MP_UNREACH_NLRI attributes, which allows remote attackers to cause a denial of service (daemon crash or exit) via crafted UPDATE messages that trigger an assertion error or out of bounds read.

nvd
больше 18 лет назад

bgpd/bgp_attr.c in Quagga 0.98.6 and earlier, and 0.99.6 and earlier 0.99 versions, does not validate length values in the MP_REACH_NLRI and MP_UNREACH_NLRI attributes, which allows remote attackers to cause a denial of service (daemon crash or exit) via crafted UPDATE messages that trigger an assertion error or out of bounds read.

debian
больше 18 лет назад

bgpd/bgp_attr.c in Quagga 0.98.6 and earlier, and 0.99.6 and earlier 0 ...

github
больше 3 лет назад

bgpd/bgp_attr.c in Quagga 0.98.6 and earlier, and 0.99.6 and earlier 0.99 versions, does not validate length values in the MP_REACH_NLRI and MP_UNREACH_NLRI attributes, which allows remote attackers to cause a denial of service (daemon crash or exit) via crafted UPDATE messages that trigger an assertion error or out of bounds read.

oracle-oval
около 18 лет назад

ELSA-2007-0389: Moderate: quagga security update (MODERATE)

EPSS

Процентиль: 77%
0.01103
Низкий

6.3 Medium

CVSS2