The aspath_prepend function in rde_attr.c in bgpd in OpenBSD 4.3 and 4.4 allows remote attackers to cause a denial of service (application crash) via an Autonomous System (AS) advertisement containing a long AS path.
Link | Tags |
---|---|
http://osvdb.org/52271 | vdb entry |
http://www.securityfocus.com/bid/33828 | vdb entry |
http://openbsd.org/errata44.html#010_bgpd | patch vendor advisory |
http://www.securitytracker.com/id?1021736 | vdb entry |
http://openbsd.org/errata43.html#010_bgpd | patch vendor advisory |
http://secunia.com/advisories/33975 | third party advisory vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/48812 | vdb entry |