CVE Vulnerabilities

CVE-2007-4826

Published: Sep 12, 2007 | Modified: Jul 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.5 LOW
AV:N/AC:M/Au:S/C:N/I:N/A:P
RedHat/V2
3.3 LOW
AV:A/AC:L/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
UNTRIAGED

bgpd in Quagga before 0.99.9 allows explicitly configured BGP peers to cause a denial of service (crash) via a malformed (1) OPEN message or (2) a COMMUNITY attribute, which triggers a NULL pointer dereference. NOTE: vector 2 only exists when debugging is enabled.

Affected Software

Name Vendor Start Version End Version
Quagga Quagga * 0.99.8 (including)
Quagga Quagga 0.95 (including) 0.95 (including)
Quagga Quagga 0.96 (including) 0.96 (including)
Quagga Quagga 0.96.1 (including) 0.96.1 (including)
Quagga Quagga 0.96.2 (including) 0.96.2 (including)
Quagga Quagga 0.96.3 (including) 0.96.3 (including)
Quagga Quagga 0.96.4 (including) 0.96.4 (including)
Quagga Quagga 0.96.5 (including) 0.96.5 (including)
Quagga Quagga 0.97.0 (including) 0.97.0 (including)
Quagga Quagga 0.97.1 (including) 0.97.1 (including)
Quagga Quagga 0.97.2 (including) 0.97.2 (including)
Quagga Quagga 0.97.3 (including) 0.97.3 (including)
Quagga Quagga 0.97.4 (including) 0.97.4 (including)
Quagga Quagga 0.97.5 (including) 0.97.5 (including)
Quagga Quagga 0.98.0 (including) 0.98.0 (including)
Quagga Quagga 0.98.1 (including) 0.98.1 (including)
Quagga Quagga 0.98.2 (including) 0.98.2 (including)
Quagga Quagga 0.98.3 (including) 0.98.3 (including)
Quagga Quagga 0.98.4 (including) 0.98.4 (including)
Quagga Quagga 0.98.5 (including) 0.98.5 (including)
Quagga Quagga 0.98.6 (including) 0.98.6 (including)
Quagga Quagga 0.99.1 (including) 0.99.1 (including)
Quagga Quagga 0.99.2 (including) 0.99.2 (including)
Quagga Quagga 0.99.3 (including) 0.99.3 (including)
Quagga Quagga 0.99.4 (including) 0.99.4 (including)
Quagga Quagga 0.99.5 (including) 0.99.5 (including)
Quagga Quagga 0.99.6 (including) 0.99.6 (including)
Quagga Quagga 0.99.7 (including) 0.99.7 (including)
Red Hat Enterprise Linux 4 RedHat quagga-0:0.98.3-4.el4_8.1 *
Red Hat Enterprise Linux 5 RedHat quagga-0:0.98.6-5.el5_5.2 *
Quagga Ubuntu dapper *
Quagga Ubuntu edgy *
Quagga Ubuntu feisty *
Quagga Ubuntu upstream *

References