Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Stack-based buffer overflow in the new_msg_lsa_change_notify function in the OSPFD API (ospf_api.c) in Quagga before 0.99.22.2, when --enable-opaque-lsa and the -a command line option are used, allows remote attackers to cause a denial of service (crash) via a large LSA.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Quagga 栈缓冲区错误漏洞
Vulnerability Description
Quagga是美国软件开发者Kunihiro Ishiguro所研发的一款路由软件套件。该套件可在多种平台上实现OSPFv2、OSPFv3、RIP v1/v2等协议,并提供路由重分布、路由映射等功能。 Quagga 0.99.22.2之前版本中的OSPFD API (ospf_api.c)中的new_msg_lsa_change_notify函数中存在基于栈的缓冲区溢出漏洞。当使用--enable-opaque-lsa和-a命令行操作时,远程攻击者可利用该漏洞造成拒绝服务(程序崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A