CVE Vulnerabilities

CVE-2007-4826

Published: Sep 12, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.5 LOW
AV:N/AC:M/Au:S/C:N/I:N/A:P
RedHat/V2
3.3 LOW
AV:A/AC:L/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

bgpd in Quagga before 0.99.9 allows explicitly configured BGP peers to cause a denial of service (crash) via a malformed (1) OPEN message or (2) a COMMUNITY attribute, which triggers a NULL pointer dereference. NOTE: vector 2 only exists when debugging is enabled.

Affected Software

NameVendorStart VersionEnd Version
QuaggaQuagga*0.99.8 (including)
QuaggaQuagga0.95 (including)0.95 (including)
QuaggaQuagga0.96 (including)0.96 (including)
QuaggaQuagga0.96.1 (including)0.96.1 (including)
QuaggaQuagga0.96.2 (including)0.96.2 (including)
QuaggaQuagga0.96.3 (including)0.96.3 (including)
QuaggaQuagga0.96.4 (including)0.96.4 (including)
QuaggaQuagga0.96.5 (including)0.96.5 (including)
QuaggaQuagga0.97.0 (including)0.97.0 (including)
QuaggaQuagga0.97.1 (including)0.97.1 (including)
QuaggaQuagga0.97.2 (including)0.97.2 (including)
QuaggaQuagga0.97.3 (including)0.97.3 (including)
QuaggaQuagga0.97.4 (including)0.97.4 (including)
QuaggaQuagga0.97.5 (including)0.97.5 (including)
QuaggaQuagga0.98.0 (including)0.98.0 (including)
QuaggaQuagga0.98.1 (including)0.98.1 (including)
QuaggaQuagga0.98.2 (including)0.98.2 (including)
QuaggaQuagga0.98.3 (including)0.98.3 (including)
QuaggaQuagga0.98.4 (including)0.98.4 (including)
QuaggaQuagga0.98.5 (including)0.98.5 (including)
QuaggaQuagga0.98.6 (including)0.98.6 (including)
QuaggaQuagga0.99.1 (including)0.99.1 (including)
QuaggaQuagga0.99.2 (including)0.99.2 (including)
QuaggaQuagga0.99.3 (including)0.99.3 (including)
QuaggaQuagga0.99.4 (including)0.99.4 (including)
QuaggaQuagga0.99.5 (including)0.99.5 (including)
QuaggaQuagga0.99.6 (including)0.99.6 (including)
QuaggaQuagga0.99.7 (including)0.99.7 (including)
Red Hat Enterprise Linux 4RedHatquagga-0:0.98.3-4.el4_8.1*
Red Hat Enterprise Linux 5RedHatquagga-0:0.98.6-5.el5_5.2*
QuaggaUbuntudapper*
QuaggaUbuntuedgy*
QuaggaUbuntufeisty*
QuaggaUbuntuupstream*

References