Loading...
Loading...
bgpd/bgp_attr.c in Quagga 0.98.6 and earlier, and 0.99.6 and earlier 0.99 versions, does not validate length values in the MP_REACH_NLRI and MP_UNREACH_NLRI attributes, which allows remote attackers to cause a denial of service (daemon crash or exit) via crafted UPDATE messages that trigger an assertion error or out of bounds read.
April 12, 2007
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2007-1995
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.