Vulnerabilidades en quagga
5 resultadosAnálisis Vexday
O Quagga apresenta footprint mínimo de vulnerabilidades conhecidas com apenas 1 CVE registrado na base, sem histórico de exploração ativa. Nenhuma vulnerabilidade crítica foi identificada, e não há registros de descobertas recentes, indicando risco baixo sob a ótica de ataques dirigidos.
CVE-2018-5378HIGHThe Quagga BGP daemon (bgpd) prior to version 1.2.3 does not properly bounds check the data sent with a NOTIFY to a peer, if an attribute leEPSS 74.2%CVE-2018-5379HIGHThe Quagga BGP daemon (bgpd) prior to version 1.2.3 can double-free memory when processing certain forms of UPDATE message, containing clustEPSS 38.5%CVE-2018-5381MEDIUMThe Quagga BGP daemon (bgpd) prior to version 1.2.3 has a bug in its parsing of "Capabilities" in BGP OPEN messages, in the bgp_packet.c:bgpEPSS 30.2%CVE-2018-5380MEDIUMThe Quagga BGP daemon (bgpd) prior to version 1.2.3 can overrun internal BGP code-to-string conversion tables used for debug by 1 pointer vaEPSS 14.8%CVE-2012-5521—quagga (ospf6d) 0.99.21 has a DoS flaw in the way the ospf6d daemon performs routes removalEPSS 1.5%