Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the OSPFv2 implementation in ospfd in Quagga before 0.99.20.1 allows remote attackers to cause a denial of service (daemon crash) via a Link State Update (aka LS Update) packet containing a network-LSA link-state advertisement for which the data-structure length is smaller than the value in the Length header field.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Quagga缓冲区溢出漏洞
Vulnerability Description
Quagga是美国软件开发者Kunihiro Ishiguro所研发的一款路由软件套件。该套件可在多种平台上实现OSPFv2、OSPFv3、RIP v1/v2等协议,并提供路由重分布、路由映射等功能。 Quagga 0.99.20.1之前版本中ospfd的OSPFv2实现中存在缓冲区溢出漏洞。远程攻击者可利用此漏洞借助包含一个数据结构长度值小于Length头字段的network-LSA链路状态广播数据包的Link State Update(也称LS Update)数据包,导致拒绝服务(守护进程崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A