Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-1995

Опубликовано: 12 апр. 2007
Источник: ubuntu
Приоритет: untriaged
EPSS Низкий
CVSS2: 6.3

Описание

bgpd/bgp_attr.c in Quagga 0.98.6 and earlier, and 0.99.6 and earlier 0.99 versions, does not validate length values in the MP_REACH_NLRI and MP_UNREACH_NLRI attributes, which allows remote attackers to cause a denial of service (daemon crash or exit) via crafted UPDATE messages that trigger an assertion error or out of bounds read.

РелизСтатусПримечание
dapper

released

0.99.2-1ubuntu3.3
devel

released

0.99.9-1ubuntu1
edgy

released

0.99.4-4ubuntu1.2
feisty

released

0.99.6-2ubuntu3.2
upstream

needs-triage

Показывать по

EPSS

Процентиль: 77%
0.01103
Низкий

6.3 Medium

CVSS2

Связанные уязвимости

redhat
около 18 лет назад

bgpd/bgp_attr.c in Quagga 0.98.6 and earlier, and 0.99.6 and earlier 0.99 versions, does not validate length values in the MP_REACH_NLRI and MP_UNREACH_NLRI attributes, which allows remote attackers to cause a denial of service (daemon crash or exit) via crafted UPDATE messages that trigger an assertion error or out of bounds read.

nvd
около 18 лет назад

bgpd/bgp_attr.c in Quagga 0.98.6 and earlier, and 0.99.6 and earlier 0.99 versions, does not validate length values in the MP_REACH_NLRI and MP_UNREACH_NLRI attributes, which allows remote attackers to cause a denial of service (daemon crash or exit) via crafted UPDATE messages that trigger an assertion error or out of bounds read.

debian
около 18 лет назад

bgpd/bgp_attr.c in Quagga 0.98.6 and earlier, and 0.99.6 and earlier 0 ...

github
около 3 лет назад

bgpd/bgp_attr.c in Quagga 0.98.6 and earlier, and 0.99.6 and earlier 0.99 versions, does not validate length values in the MP_REACH_NLRI and MP_UNREACH_NLRI attributes, which allows remote attackers to cause a denial of service (daemon crash or exit) via crafted UPDATE messages that trigger an assertion error or out of bounds read.

oracle-oval
около 18 лет назад

ELSA-2007-0389: Moderate: quagga security update (MODERATE)

EPSS

Процентиль: 77%
0.01103
Низкий

6.3 Medium

CVSS2