Note:
This project will be discontinued after December 13, 2021. [more]
2018-06-08
BIRD Internet Routing Daemon before 1.6.4 allows local users to cause a denial of service (stack consumption and daemon crash) via BGP mask expressions in birdc.
Products | Bird |
Type | Uncontrolled Resource Consumption (CWE-400) |
First patch | - None (likely due to unavailable code) |
Links |
• https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=900967
• http://bird.network.cz • https://gitlab.labs.nic.cz/labs/bird/commit/e8bc64e308586b6502090da2775af84cd760ed0d • https://gitlab.labs.nic.cz/labs/bird/blob/v1.6.4/NEWS#L11 |