NVD

Id
54165  
Name
CVE-2007-1995  
Description
bgpd/bgp_attr.c in Quagga 0.98.6 and earlier, and 0.99.6 and earlier 0.99 versions, does not validate length values in the MP_REACH_NLRI and MP_UNREACH_NLRI attributes, which allows remote attackers to cause a denial of service (daemon crash or exit) via crafted UPDATE messages that trigger an assertion error or out of bounds read.  
Reject
 
CVSS Version
2  
CVSS Score
6.3  
Severity
Medium  
CVSS Base Score
6.3  
CVSS Impact Subscore
6.9  
CVSS Exploit Subscore
6.8  
CVSS Vector
(AV:N/AC:M/Au:S/C:N/I:N/A:C)  
Pub Date
2017-01-07  
Published
2007-04-12  
Modified Date
2011-03-31  
Seq
2007-1995  

Actions