MGASA-2016-0126

Source
https://advisories.mageia.org/MGASA-2016-0126.html
Import Source
https://advisories.mageia.org/MGASA-2016-0126.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2016-0126
Related
Published
2016-03-26T15:07:38Z
Modified
2016-03-26T15:00:59Z
Summary
Updated quagga packages fix security vulnerability
Details

A vulnerability was found in a way VPNv4 NLRI parser copied packet data to the stack. Memcpy to stack data structure based on length field from packet data whose length field upper-bound was not properly checked (CVE-2016-2342).

References
Credits

Affected packages