Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
http://lists.quagga.net/pipermail/quagga-dev/2009-April/006541.html http://www.vuxml.org/freebsd/2748fdde-3a3c-11de-bbc5-00e0815b8da8.html
Insight
The following package is affected: quagga
CVE-2009-1572
The BGP daemon (bgpd) in Quagga 0.99.11 and earlier allows remote attackers to cause a denial of service (crash) via an AS path containing ASN elements whose string representation is longer than expected, which triggers an assert error.
Severity
Classification
-
CVE CVE-2009-1572 -
CVSS Base Score: 5.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
Related Vulnerabilities