Description
The ospf6_lsa_is_changed function in ospf6_lsa.c in the OSPFv3 implementation in ospf6d in Quagga before 0.99.19 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via trailing zero values in the Link State Advertisement (LSA) header list of an IPv6 Database Description message.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2316-1 | quagga security update |
EUVD |
EUVD-2011-3288 | The ospf6_lsa_is_changed function in ospf6_lsa.c in the OSPFv3 implementation in ospf6d in Quagga before 0.99.19 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via trailing zero values in the Link State Advertisement (LSA) header list of an IPv6 Database Description message. |
Ubuntu USN |
USN-1261-1 | Quagga vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2024-08-06T23:29:56.886Z
Reserved: 2011-08-29T00:00:00.000Z
Link: CVE-2011-3324
No data.
Status : Modified
Published: 2011-10-10T10:55:06.410
Modified: 2026-04-29T01:13:23.040
Link: CVE-2011-3324
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD
Ubuntu USN