Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The vty layer in Quagga before 0.96.4, and Zebra 0.93b and earlier, does not verify that sub-negotiation is taking place when processing the SE marker, which allows remote attackers to cause a denial of service (crash) via a malformed telnet command to the telnet CLI port, which may trigger a null dereference.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GNU Zebra / Quagga远程拒绝服务攻击漏洞
Vulnerability Description
Zebra是一款开放源代码TCP/IP路由模拟程序,Quagga实现同样功能。 GNU Zebra / Quagga不正确处理畸形telnet命令请求,远程攻击者可以利用这个漏洞对服务程序进行拒绝服务攻击。 攻击者连接GNU Zebra / Quagga的telnet管理端口,发送畸形telnet命令,程序尝试废弃非法NULL指针时而崩溃。
CVSS Information
N/A
Vulnerability Type
N/A