OpenBSD BGP UPDATE Message Remote Denial of Service Vulnerability
BID:33553
Info
OpenBSD BGP UPDATE Message Remote Denial of Service Vulnerability
| Bugtraq ID: | 33553 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 02 2009 12:00AM |
| Updated: | Feb 02 2009 11:39PM |
| Credit: | OpenBSD |
| Vulnerable: |
OpenBSD OpenBSD 4.4 OpenBSD OpenBSD 4.3 |
| Not Vulnerable: | |
Discussion
OpenBSD BGP UPDATE Message Remote Denial of Service Vulnerability
OpenBSD is prone to a remote denial-of-service vulnerability when processing certain BGP UPDATE messages.
Exploiting this issue allows remote attackers to terminate BGP sessions and potentially cause denial-of-service conditions.
OpenBSD 4.4 and 4.3 are vulnerable.
OpenBSD is prone to a remote denial-of-service vulnerability when processing certain BGP UPDATE messages.
Exploiting this issue allows remote attackers to terminate BGP sessions and potentially cause denial-of-service conditions.
OpenBSD 4.4 and 4.3 are vulnerable.
Exploit / POC
OpenBSD BGP UPDATE Message Remote Denial of Service Vulnerability
Attackers will likely use standard tools to exploit this issue.
Attackers will likely use standard tools to exploit this issue.
Solution / Fix
OpenBSD BGP UPDATE Message Remote Denial of Service Vulnerability
Solution:
The vendor released fixes to address this issue. Please see the references for more information.
Solution:
The vendor released fixes to address this issue. Please see the references for more information.
References
OpenBSD BGP UPDATE Message Remote Denial of Service Vulnerability
References:
References:
- OpenBSD 4.3 Errata Page (OpenBSD)
- OpenBSD 4.4 release errata & patch list (OpenBSD)
- OpenBSD Homepage (OpenBSD)