PT-2014-3350 · Brocade · Brocade Vyatta Vrouter

Published

2014-01-23

·

Updated

2014-01-23

·

CVE-2013-7307

CVSS v2.0

5.4

Medium

VectorAV:A/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Brocade Vyatta vRouter versions prior to 6.6R1
Description The OSPF implementation does not consider the possibility of duplicate Link State ID values in Link State Advertisement (LSA) packets before performing operations on the LSA database. This allows remote attackers to cause a denial of service (routing disruption) or obtain sensitive packet information via a crafted LSA packet.
Recommendations For versions prior to 6.6R1, update to version 6.6R1 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2013-7307

Affected Products

Brocade Vyatta Vrouter