CVE-2003-0858: Low severity Quagga Quagga Routing Software Suite vulnerability
Published Nov 18, 2003
·Updated
Zebra 0.93b and earlier, and quagga before 0.95, allows local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface.
Affected Software
2 affected components
Quagga Quagga Routing Software Suite<=0.95
GNU Zebra<=0.91
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Nov 18, 2003
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Dec 15, 2003
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0858?
CVE-2003-0858 is classified as a denial of service vulnerability.
2
How do I fix CVE-2003-0858?
To fix CVE-2003-0858, upgrade to Quagga version 0.95 or later, or GNU Zebra version 0.93b or later.
3
Who is affected by CVE-2003-0858?
CVE-2003-0858 affects local users of Zebra 0.93b and earlier, as well as Quagga before version 0.95.
4
What types of systems are impacted by CVE-2003-0858?
Systems running GNU Zebra or Quagga routing software, particularly versions below the specified updates, are impacted by CVE-2003-0858.
5
Can CVE-2003-0858 be exploited remotely?
CVE-2003-0858 requires local user access to exploit, so it cannot be exploited remotely.