LWN.net Logo

quagga: denial of service

Package(s):quagga CVE #(s):CVE-2009-1572
Created:May 11, 2009 Updated:July 3, 2009
Description:

From the Mandriva advisory:

The BGP daemon (bgpd) in Quagga 0.99.11 and earlier allows remote attackers to cause a denial of service (crash) via an AS path containing ASN elements whose string representation is longer than expected, which triggers an assert error (CVE-2009-1572).

Alerts:
SuSE SUSE-SR:2009:012 2009-07-03
Ubuntu USN-775-2 2009-06-09
Fedora FEDORA-2009-5324 2009-05-21
Fedora FEDORA-2009-5284 2009-05-21
Ubuntu USN-775-1 2009-05-12
Mandriva MDVSA-2009:109 2009-05-10

(Log in to post comments)

Copyright © 2012, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds