5
CVSSv2

CVE-2011-3324

Published: 10/10/2011 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The ospf6_lsa_is_changed function in ospf6_lsa.c in the OSPFv3 implementation in ospf6d in Quagga prior to 0.99.19 allows remote malicious users to cause a denial of service (assertion failure and daemon exit) via trailing zero values in the Link State Advertisement (LSA) header list of an IPv6 Database Description message.

Vulnerable Product Search on Vulmon Subscribe to Product

quagga quagga 0.99.11

quagga quagga 0.99.2

quagga quagga 0.97.5

quagga quagga 0.95

quagga quagga 0.98.3

quagga quagga 0.96.3

quagga quagga 0.99.4

quagga quagga 0.99.7

quagga quagga 0.99.14

quagga quagga 0.99.5

quagga quagga 0.96.5

quagga quagga 0.98.0

quagga quagga 0.99.16

quagga quagga 0.96.1

quagga quagga 0.98.1

quagga quagga 0.96.4

quagga quagga 0.98.5

quagga quagga 0.97.3

quagga quagga 0.99.17

quagga quagga 0.99.3

quagga quagga 0.99.13

quagga quagga 0.99.6

quagga quagga 0.98.6

quagga quagga 0.97.4

quagga quagga 0.98.4

quagga quagga 0.99.12

quagga quagga 0.98.2

quagga quagga 0.97.1

quagga quagga 0.97.0

quagga quagga 0.96.2

quagga quagga 0.99.9

quagga quagga 0.99.1

quagga quagga

quagga quagga 0.97.2

quagga quagga 0.99.15

quagga quagga 0.99.10

quagga quagga 0.99.8

quagga quagga 0.96

Vendor Advisories

Quagga could be made to crash or run programs if it received specially crafted network traffic ...
Synopsis Moderate: quagga security update Type/Severity Security Advisory: Moderate Topic Updated quagga packages that fix multiple security issues are now availablefor Red Hat Enterprise Linux 5The Red Hat Security Response Team has rated this update as having moderatesecurity impact Common Vulnerability ...
Synopsis Moderate: quagga security update Type/Severity Security Advisory: Moderate Topic Updated quagga packages that fix multiple security issues are now availablefor Red Hat Enterprise Linux 6The Red Hat Security Response Team has rated this update as having moderatesecurity impact Common Vulnerability ...
Riku Hietamaki, Tuomo Untinen and Jukka Taimisto discovered several vulnerabilities in Quagga, an Internet routing daemon: CVE-2011-3323 A stack-based buffer overflow while decoding Link State Update packets with a malformed Inter Area Prefix LSA can cause the ospf6d process to crash or (potentially) execute arbitrary code CVE-201 ...