Wind River Support Network

HomeDefectsLIN6-4878
Fixed

LIN6-4878 : Security Advisory - quagga - CVE-2012-1820

Created: Jun 17, 2012    Updated: Dec 3, 2018
Resolved Date: May 22, 2014
Previous ID: LIN3-25857
Found In Version: 6.0
Fix Version: 6.0.0.7
Severity: Low
Applicable for: Wind River Linux 6
Component/s: Userspace

Description

The bgp_capability_orf function in bgpd in Quagga 0.99.20.1 and earlier allows remote attackers to cause a denial of service (assertion failure and daemon exit) by leveraging a BGP peering relationship and sending a malformed Outbound Route Filtering (ORF) capability TLV in an OPEN message.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-1820

Workaround

Unknown

Steps to Reproduce

Unknown

Other Downloads


Live chat
Online