|
|
| |
|
| |
quagga: denial of service
| Package(s): | quagga |
CVE #(s): | CVE-2012-1820
|
| Created: | June 19, 2012 |
Updated: | April 10, 2013 |
| Description: |
From the Red Hat bugzilla:
A denial of service flaw was found in the way Quagga's bgpd daemon processed certain OPEN messages. A configured Border Gateway Protocol (BGP) peer could send a BGP OPEN message with specially-crafted value of the Outbound Route Filtering (ORF) capability Type/Length/Value (TLV) triplet, which would cause the master BGP daemon (bgpd) to abort with an assertion failure by processing of such a message. Also, all BGP sessions established by the attacked router would be closed and its BGP routing disrupted. |
| Alerts: |
|
( Log in to post comments)
|
|
|