RIPd in Quagga 0.98 and 0.99 before 20060503 does not properly enforce RIPv2 authentication requirements, which allows remote attackers to modify routing state via RIPv1 RESPONSE packets.
{ "urgency": "medium" }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2006-2224.json"