Show filters
17 Total Results
Displaying 11-17 of 17
Sort by:
Attacker Value
Unknown

CVE-2010-1675

Disclosure Date: March 29, 2011 (last updated October 04, 2023)
bgpd in Quagga before 0.99.18 allows remote attackers to cause a denial of service (session reset) via a malformed AS_PATHLIMIT path attribute.
0
Attacker Value
Unknown

CVE-2010-2948

Disclosure Date: September 10, 2010 (last updated October 04, 2023)
Stack-based buffer overflow in the bgp_route_refresh_receive function in bgp_packet.c in bgpd in Quagga before 0.99.17 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a malformed Outbound Route Filtering (ORF) record in a BGP ROUTE-REFRESH (RR) message.
0
Attacker Value
Unknown

CVE-2010-2949

Disclosure Date: September 10, 2010 (last updated October 04, 2023)
bgpd in Quagga before 0.99.17 does not properly parse AS paths, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an unknown AS type in an AS path attribute in a BGP UPDATE message.
0
Attacker Value
Unknown

CVE-2009-1572

Disclosure Date: May 06, 2009 (last updated October 04, 2023)
The BGP daemon (bgpd) in Quagga 0.99.11 and earlier allows remote attackers to cause a denial of service (crash) via an AS path containing ASN elements whose string representation is longer than expected, which triggers an assert error.
0
Attacker Value
Unknown

CVE-2007-4826

Disclosure Date: September 12, 2007 (last updated October 04, 2023)
bgpd in Quagga before 0.99.9 allows explicitly configured BGP peers to cause a denial of service (crash) via a malformed (1) OPEN message or (2) a COMMUNITY attribute, which triggers a NULL pointer dereference. NOTE: vector 2 only exists when debugging is enabled.
0
Attacker Value
Unknown

CVE-2006-2276

Disclosure Date: May 10, 2006 (last updated October 04, 2023)
bgpd in Quagga 0.98 and 0.99 before 20060504 allows local users to cause a denial of service (CPU consumption) via a certain sh ip bgp command entered in the telnet interface.
0
Attacker Value
Unknown

CVE-2006-2223

Disclosure Date: May 05, 2006 (last updated October 04, 2023)
RIPd in Quagga 0.98 and 0.99 before 20060503 does not properly implement configurations that (1) disable RIPv1 or (2) require plaintext or MD5 authentication, which allows remote attackers to obtain sensitive information (routing state) via REQUEST packets such as SEND UPDATE.
0