Go to file
Ondřej Lysoněk 2e724224e1 Fix CVE-2018-5379, CVE-2018-5380, CVE-2018-5381, CVE-2018-5378
Fixed CVE-2018-5379 - Double free vulnerability in bgpd when processing
  certain forms of UPDATE message allowing to crash or potentially execute
  arbitrary code
Resolves: rhbz#1546008

Fixed CVE-2018-5380 - bgpd can overrun internal BGP code-to-string
  conversion tables potentially allowing crash
Resolves: rhbz#1546006

Fixed CVE-2018-5381 - Infinite loop issue triggered by invalid OPEN message
  allows denial-of-service
Resolves: rhbz#1546004

Fixed CVE-2018-5378 - bgpd does not properly bounds check the data sent with
  a NOTIFY allowing leak of sensitive data or crash
Resolves: rhbz#1546009
2018-02-22 12:19:17 +01:00
.gitignore rebase to 1.2.2(#1504420) 2017-11-14 12:48:19 +01:00
0001-bgpd-security-debug-print-of-received-NOTIFY-data-ca.patch Fix CVE-2018-5379, CVE-2018-5380, CVE-2018-5381, CVE-2018-5378 2018-02-22 12:19:17 +01:00
0001-bgpd-security-Fix-double-free-of-unknown-attribute.patch Fix CVE-2018-5379, CVE-2018-5380, CVE-2018-5381, CVE-2018-5378 2018-02-22 12:19:17 +01:00
0001-bgpd-security-fix-infinite-loop-on-certain-invalid-O.patch Fix CVE-2018-5379, CVE-2018-5380, CVE-2018-5381, CVE-2018-5378 2018-02-22 12:19:17 +01:00
0001-bgpd-security-invalid-attr-length-sends-NOTIFY-with-.patch Fix CVE-2018-5379, CVE-2018-5380, CVE-2018-5381, CVE-2018-5378 2018-02-22 12:19:17 +01:00
quagga-filter-perl-requires.sh auto-import changelog data from quagga-0.96.2-4.3E.src.rpm 2004-09-09 11:03:00 +00:00
quagga-tmpfs.conf fixes #689852 - CVE-2010-1674 CVE-2010-1675 quagga various flaws 2011-03-23 13:22:41 +01:00
quagga.spec Fix CVE-2018-5379, CVE-2018-5380, CVE-2018-5381, CVE-2018-5378 2018-02-22 12:19:17 +01:00
sources rebase to 1.2.2(#1504420) 2017-11-14 12:48:19 +01:00