PublicDateAtUSN: 2016-05-23 Candidate: CVE-2016-4049 PublicDate: 2016-05-23 19:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4049 https://lists.quagga.net/pipermail/quagga-dev/2016-January/014699.html https://lists.quagga.net/pipermail/quagga-dev/2016-April/015241.html https://ubuntu.com/security/notices/USN-3102-1 Description: The bgp_dump_routes_func function in bgpd/bgp_dump.c in Quagga does not perform size checks when dumping data, which might allow remote attackers to cause a denial of service (assertion failure and daemon crash) via a large BGP packet. Ubuntu-Description: Notes: mdeslaur> as of 2016-09-15, upstream hasn't commited the proposed patch mdeslaur> debian released update with proposed patch Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=822787 Priority: medium Discovered-by: Assigned-to: mdeslaur CVSS: nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H [7.5 HIGH] Patches_quagga: upstream_quagga: released (1.0.20160315-2) precise_quagga: released (0.99.20.1-0ubuntu0.12.04.5) trusty_quagga: released (0.99.22.4-3ubuntu1.2) trusty/esm_quagga: DNE (trusty was released [0.99.22.4-3ubuntu1.2]) vivid/stable-phone-overlay_quagga: DNE vivid/ubuntu-core_quagga: DNE wily_quagga: ignored (reached end-of-life) xenial_quagga: released (0.99.24.1-2ubuntu1.1) esm-infra/xenial_quagga: released (0.99.24.1-2ubuntu1.1) devel_quagga: not-affected (1.0.20160315-2)