7.5
CVSSv2

CVE-2011-3327

Published: 10/10/2011 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Heap-based buffer overflow in the ecommunity_ecom2str function in bgp_ecommunity.c in bgpd in Quagga prior to 0.99.19 allows remote malicious users to cause a denial of service (daemon crash) or possibly execute arbitrary code by sending a crafted BGP UPDATE message over IPv4.

Vulnerable Product Search on Vulmon Subscribe to Product

quagga quagga 0.99.11

quagga quagga 0.99.2

quagga quagga 0.97.5

quagga quagga 0.95

quagga quagga 0.98.3

quagga quagga 0.96.3

quagga quagga 0.99.4

quagga quagga 0.99.7

quagga quagga 0.99.14

quagga quagga 0.99.5

quagga quagga 0.96.5

quagga quagga 0.98.0

quagga quagga 0.99.16

quagga quagga 0.96.1

quagga quagga 0.98.1

quagga quagga 0.96.4

quagga quagga 0.98.5

quagga quagga 0.97.3

quagga quagga 0.99.17

quagga quagga 0.99.3

quagga quagga 0.99.13

quagga quagga 0.99.6

quagga quagga 0.98.6

quagga quagga 0.97.4

quagga quagga 0.98.4

quagga quagga 0.99.12

quagga quagga 0.98.2

quagga quagga 0.97.1

quagga quagga 0.97.0

quagga quagga 0.96.2

quagga quagga 0.99.9

quagga quagga 0.99.1

quagga quagga

quagga quagga 0.97.2

quagga quagga 0.99.15

quagga quagga 0.99.10

quagga quagga 0.99.8

quagga quagga 0.96

Vendor Advisories

Quagga could be made to crash or run programs if it received specially crafted network traffic ...
Synopsis Moderate: quagga security update Type/Severity Security Advisory: Moderate Topic Updated quagga packages that fix multiple security issues are now availablefor Red Hat Enterprise Linux 5The Red Hat Security Response Team has rated this update as having moderatesecurity impact Common Vulnerability ...
Synopsis Moderate: quagga security update Type/Severity Security Advisory: Moderate Topic Updated quagga packages that fix multiple security issues are now availablefor Red Hat Enterprise Linux 6The Red Hat Security Response Team has rated this update as having moderatesecurity impact Common Vulnerability ...
Riku Hietamaki, Tuomo Untinen and Jukka Taimisto discovered several vulnerabilities in Quagga, an Internet routing daemon: CVE-2011-3323 A stack-based buffer overflow while decoding Link State Update packets with a malformed Inter Area Prefix LSA can cause the ospf6d process to crash or (potentially) execute arbitrary code CVE-201 ...