CVE Vulnerabilities

CVE-2011-3324

Published: Oct 10, 2011 | Modified: Jan 06, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
2.9 LOW
AV:A/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu

The ospf6_lsa_is_changed function in ospf6_lsa.c in the OSPFv3 implementation in ospf6d in Quagga before 0.99.19 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via trailing zero values in the Link State Advertisement (LSA) header list of an IPv6 Database Description message.

Affected Software

Name Vendor Start Version End Version
Quagga Quagga 0.95 0.95
Quagga Quagga 0.96 0.96
Quagga Quagga 0.96.1 0.96.1
Quagga Quagga 0.96.2 0.96.2
Quagga Quagga 0.96.3 0.96.3
Quagga Quagga 0.96.4 0.96.4
Quagga Quagga 0.96.5 0.96.5
Quagga Quagga 0.97.0 0.97.0
Quagga Quagga 0.97.1 0.97.1
Quagga Quagga 0.97.2 0.97.2
Quagga Quagga 0.97.3 0.97.3
Quagga Quagga 0.97.4 0.97.4
Quagga Quagga 0.97.5 0.97.5
Quagga Quagga 0.98.0 0.98.0
Quagga Quagga 0.98.1 0.98.1
Quagga Quagga 0.98.2 0.98.2
Quagga Quagga 0.98.3 0.98.3
Quagga Quagga 0.98.4 0.98.4
Quagga Quagga 0.98.5 0.98.5
Quagga Quagga 0.98.6 0.98.6
Quagga Quagga 0.99.1 0.99.1
Quagga Quagga 0.99.2 0.99.2
Quagga Quagga 0.99.3 0.99.3
Quagga Quagga 0.99.4 0.99.4
Quagga Quagga 0.99.5 0.99.5
Quagga Quagga 0.99.6 0.99.6
Quagga Quagga 0.99.7 0.99.7
Quagga Quagga 0.99.8 0.99.8
Quagga Quagga 0.99.9 0.99.9
Quagga Quagga 0.99.10 0.99.10
Quagga Quagga 0.99.11 0.99.11
Quagga Quagga 0.99.12 0.99.12
Quagga Quagga 0.99.13 0.99.13
Quagga Quagga 0.99.14 0.99.14
Quagga Quagga 0.99.15 0.99.15
Quagga Quagga 0.99.16 0.99.16
Quagga Quagga 0.99.17 0.99.17
Quagga Quagga * 0.99.18
Red Hat Enterprise Linux 5 RedHat quagga-0:0.98.6-7.el5_8.1 *
Red Hat Enterprise Linux 6 RedHat quagga-0:0.99.15-7.el6_3.2 *
Quagga Ubuntu hardy *
Quagga Ubuntu lucid *
Quagga Ubuntu maverick *
Quagga Ubuntu natty *
Quagga Ubuntu oneiric *
Quagga Ubuntu upstream *

References