bgpd in Quagga before 0.99.9 allows explicitly configured BGP peers to cause a denial of service (crash) via a malformed (1) OPEN message or (2) a COMMUNITY attribute, which triggers a NULL pointer dereference. NOTE: vector 2 only exists when debugging is enabled.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-09-12 03:17
Updated : 2017-07-28 18:33
NVD link : CVE-2007-4826
Mitre link : CVE-2007-4826
JSON object : View
CWE
Products Affected
quagga
- quagga