The bgp_capability_orf function in bgpd in Quagga 0.99.20.1 and earlier allows remote attackers to cause a denial of service (assertion failure and daemon exit) by leveraging a BGP peering relationship and sending a malformed Outbound Route Filtering (ORF) capability TLV in an OPEN message.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Quagga | Quagga | * | 0.99.20.1 (including) |
Quagga | Quagga | 0.95 (including) | 0.95 (including) |
Quagga | Quagga | 0.96 (including) | 0.96 (including) |
Quagga | Quagga | 0.96.1 (including) | 0.96.1 (including) |
Quagga | Quagga | 0.96.2 (including) | 0.96.2 (including) |
Quagga | Quagga | 0.96.3 (including) | 0.96.3 (including) |
Quagga | Quagga | 0.96.4 (including) | 0.96.4 (including) |
Quagga | Quagga | 0.96.5 (including) | 0.96.5 (including) |
Quagga | Quagga | 0.97.0 (including) | 0.97.0 (including) |
Quagga | Quagga | 0.97.1 (including) | 0.97.1 (including) |
Quagga | Quagga | 0.97.2 (including) | 0.97.2 (including) |
Quagga | Quagga | 0.97.3 (including) | 0.97.3 (including) |
Quagga | Quagga | 0.97.4 (including) | 0.97.4 (including) |
Quagga | Quagga | 0.97.5 (including) | 0.97.5 (including) |
Quagga | Quagga | 0.98.0 (including) | 0.98.0 (including) |
Quagga | Quagga | 0.98.1 (including) | 0.98.1 (including) |
Quagga | Quagga | 0.98.2 (including) | 0.98.2 (including) |
Quagga | Quagga | 0.98.3 (including) | 0.98.3 (including) |
Quagga | Quagga | 0.98.4 (including) | 0.98.4 (including) |
Quagga | Quagga | 0.98.5 (including) | 0.98.5 (including) |
Quagga | Quagga | 0.98.6 (including) | 0.98.6 (including) |
Quagga | Quagga | 0.99.1 (including) | 0.99.1 (including) |
Quagga | Quagga | 0.99.2 (including) | 0.99.2 (including) |
Quagga | Quagga | 0.99.3 (including) | 0.99.3 (including) |
Quagga | Quagga | 0.99.4 (including) | 0.99.4 (including) |
Quagga | Quagga | 0.99.5 (including) | 0.99.5 (including) |
Quagga | Quagga | 0.99.6 (including) | 0.99.6 (including) |
Quagga | Quagga | 0.99.7 (including) | 0.99.7 (including) |
Quagga | Quagga | 0.99.8 (including) | 0.99.8 (including) |
Quagga | Quagga | 0.99.9 (including) | 0.99.9 (including) |
Quagga | Quagga | 0.99.10 (including) | 0.99.10 (including) |
Quagga | Quagga | 0.99.11 (including) | 0.99.11 (including) |
Quagga | Quagga | 0.99.12 (including) | 0.99.12 (including) |
Quagga | Quagga | 0.99.13 (including) | 0.99.13 (including) |
Quagga | Quagga | 0.99.14 (including) | 0.99.14 (including) |
Quagga | Quagga | 0.99.15 (including) | 0.99.15 (including) |
Quagga | Quagga | 0.99.16 (including) | 0.99.16 (including) |
Quagga | Quagga | 0.99.17 (including) | 0.99.17 (including) |
Quagga | Quagga | 0.99.18 (including) | 0.99.18 (including) |
Quagga | Quagga | 0.99.19 (including) | 0.99.19 (including) |
Quagga | Quagga | 0.99.20 (including) | 0.99.20 (including) |
Red Hat Enterprise Linux 6 | RedHat | quagga-0:0.99.15-7.el6_3.2 | * |
Quagga | Ubuntu | hardy | * |
Quagga | Ubuntu | lucid | * |
Quagga | Ubuntu | natty | * |
Quagga | Ubuntu | oneiric | * |
Quagga | Ubuntu | precise | * |