Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | |||
CVE ID: | CVE-2018-5379 |
Description: | The Quagga BGP daemon (bgpd) prior to version 1.2.3 can double-free memory when processing certain forms of UPDATE message, containing cluster-list and/or unknown attributes. A successful attack could cause a denial of service or potentially allow an attacker to execute arbitrary code. |
Test IDs: | 1.3.6.1.4.1.25623.1.0.704115 1.3.6.1.4.1.25623.1.0.882853 1.3.6.1.4.1.25623.1.1.2.2018.1064 |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2018-5379 BugTraq ID: 103105 http://www.securityfocus.com/bid/103105 CERT/CC vulnerability note: VU#940439 http://www.kb.cert.org/vuls/id/940439 Debian Security Information: DSA-4115 (Google Search) https://www.debian.org/security/2018/dsa-4115 https://security.gentoo.org/glsa/201804-17 https://lists.debian.org/debian-lts-announce/2018/02/msg00021.html RedHat Security Advisories: RHSA-2018:0377 https://access.redhat.com/errata/RHSA-2018:0377 https://usn.ubuntu.com/3573-1/ |