Zebra 0.93b and earlier, and quagga before 0.95, allows local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface.
References
Link | Resource |
---|---|
http://www.redhat.com/support/errata/RHSA-2003-305.html | Patch Vendor Advisory |
http://www.redhat.com/support/errata/RHSA-2003-307.html | Patch Vendor Advisory |
http://www.redhat.com/support/errata/RHSA-2003-315.html | Patch Vendor Advisory |
http://www.debian.org/security/2004/dsa-415 | Patch Vendor Advisory |
http://secunia.com/advisories/10563 | Vendor Advisory |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10169 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2003-12-14 21:00
Updated : 2017-10-10 18:29
NVD link : CVE-2003-0858
Mitre link : CVE-2003-0858
JSON object : View
CWE
CWE-399
Resource Management Errors
Products Affected
gnu
- zebra
quagga
- quagga_routing_software_suite