Bug 285691 (CVE-2007-4826) - CVE-2007-4826 quagga bgpd DoS
Summary: CVE-2007-4826 quagga bgpd DoS
Keywords:
Status: CLOSED ERRATA
Alias: CVE-2007-4826
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL: http://quagga.net/news2.php?y=2007&m=...
Whiteboard:
Depends On: 292841 315301 638624 638626 638627 638628 833977
Blocks:
TreeView+ depends on / blocked
 
Reported: 2007-09-11 09:10 UTC by Tomas Hoger
Modified: 2021-11-12 19:44 UTC (History)
4 users (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2011-09-28 20:40:27 UTC
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2010:0785 0 normal SHIPPED_LIVE Moderate: quagga security update 2010-10-20 16:24:08 UTC

Description Tomas Hoger 2007-09-11 09:10:32 UTC
From Quagga 0.99.9 release notes:

This release fixes two potential DoS conditions in bgpd, reported by Mu
Security, where a bgpd could be crashed if a peer sent a malformed OPEN message
or a malformed COMMUNITY attribute. Only configured peers can do this, hence we
consider these issues to be very low impact.

http://quagga.net/news2.php?y=2007&m=9&d=7#id1189190760


CVS commits referencing this issue:

http://cvs.quagga.net/cgi-bin/viewcvs.cgi/quagga/bgpd/bgp_attr.c.diff?r1=1.23&r2=1.24&diff_format=h
 
http://cvs.quagga.net/cgi-bin/viewcvs.cgi/quagga/bgpd/bgp_community.c.diff?r1=1.7&r2=1.8&diff_format=h

Comment 6 Jan Lieskovsky 2010-09-29 13:09:36 UTC
Relevant git changeset:
[1] http://code.quagga.net/?p=quagga.git;a=commit;h=b2ceea18074ab8cca894051a3fbc30c312e3acc6

Comment 13 errata-xmlrpc 2010-10-20 16:24:17 UTC
This issue has been addressed in following products:

  Red Hat Enterprise Linux 4
  Red Hat Enterprise Linux 5

Via RHSA-2010:0785 https://rhn.redhat.com/errata/RHSA-2010-0785.html

Comment 14 Kurt Seifried 2011-09-28 20:40:27 UTC
All z-stream children bugs have been closed, futue tracking bugs still open, parent is no longer needed.


Note You need to log in before you can comment on or make changes to this bug.