PT-2014-3350 · Brocade · Brocade Vyatta Vrouter
Published
2014-01-23
·
Updated
2014-01-23
·
CVE-2013-7307
CVSS v2.0
5.4
Medium
| Vector | AV:A/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Brocade Vyatta vRouter versions prior to 6.6R1
Description
The OSPF implementation does not consider the possibility of duplicate Link State ID values in Link State Advertisement (LSA) packets before performing operations on the LSA database. This allows remote attackers to cause a denial of service (routing disruption) or obtain sensitive packet information via a crafted LSA packet.
Recommendations
For versions prior to 6.6R1, update to version 6.6R1 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Brocade Vyatta Vrouter