CVE-2006-2224

RIPd in Quagga 0.98 and 0.99 before 20060503 does not properly enforce RIPv2 authentication requirements, which allows remote attackers to modify routing state via RIPv1 RESPONSE packets.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:quagga:quagga_routing_software_suite:*:*:*:*:*:*:*:*
cpe:2.3:a:quagga:quagga_routing_software_suite:0.95:*:*:*:*:*:*:*
cpe:2.3:a:quagga:quagga_routing_software_suite:0.96.2:*:*:*:*:*:*:*
cpe:2.3:a:quagga:quagga_routing_software_suite:0.96.3:*:*:*:*:*:*:*
cpe:2.3:a:quagga:quagga_routing_software_suite:0.98.5:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-05-05 19:02

Updated : 2023-12-10 10:28


NVD link : CVE-2006-2224

Mitre link : CVE-2006-2224

CVE.ORG link : CVE-2006-2224


JSON object : View

Products Affected

quagga

  • quagga_routing_software_suite
CWE
CWE-287

Improper Authentication