Lucene search

K
cvelistDebianCVELIST:CVE-2016-1245
HistoryFeb 22, 2017 - 11:00 p.m.

CVE-2016-1245

2017-02-2223:00:00
debian
www.cve.org
2

9.6 High

AI Score

Confidence

High

0.026 Low

EPSS

Percentile

90.3%

It was discovered that the zebra daemon in Quagga before 1.0.20161017 suffered from a stack-based buffer overflow when processing IPv6 Neighbor Discovery messages. The root cause was relying on BUFSIZ to be compatible with a message size; however, BUFSIZ is system-dependent.

CNA Affected

[
  {
    "product": "Quagga before 1.0.20161017",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Quagga before 1.0.20161017"
      }
    ]
  }
]