[ubuntu/xenial-security] quagga 0.99.24.1-2ubuntu1.4 (Accepted)

Steve Beattie sbeattie at ubuntu.com
Thu Feb 15 23:19:45 UTC 2018


quagga (0.99.24.1-2ubuntu1.4) xenial-security; urgency=medium

  * SECURITY UPDATE: DoS and possible code execution via double-free
    - debian/patches/Quagga-2018-1114.patch: fix double-free in
      bgpd/bgp_attr.c, bgpd/bgp_attr.h.
    - No CVE number
  * SECURITY UPDATE: code-to-string conversion table overrun
    - debian/patches/Quagga-2018-1550.patch: limit size in
      bgpd/bgp_debug.c.
    - No CVE number
  * SECURITY UPDATE: hang via invalid OPEN message
    - debian/patches/Quagga-2018-1975.patch: fix infinite loop in
      bgpd/bgp_packet.c.
    - No CVE number

Date: 2018-02-08 12:38:13.454454+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
Signed-By: Steve Beattie <sbeattie at ubuntu.com>
https://launchpad.net/ubuntu/+source/quagga/0.99.24.1-2ubuntu1.4
-------------- next part --------------
Sorry, changesfile not available.


More information about the Xenial-changes mailing list