CVE-2006-2224

Source
https://nvd.nist.gov/vuln/detail/CVE-2006-2224
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2006-2224.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2006-2224
Related
Withdrawn
2024-06-30T15:57:04.023607Z
Published
2006-05-05T19:02:00Z
Modified
2024-06-04T04:00:19Z
Summary
[none]
Details

RIPd in Quagga 0.98 and 0.99 before 20060503 does not properly enforce RIPv2 authentication requirements, which allows remote attackers to modify routing state via RIPv1 RESPONSE packets.

References

Affected packages

Debian:10 / quagga

Package

Name
quagga
Purl
pkg:deb/debian/quagga?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.99.3-2

Ecosystem specific

{
    "urgency": "medium"
}