[Bug 994169] [NEW] quagga security update tracking bug

Marc Deslauriers marc.deslauriers at canonical.com
Thu May 3 19:30:38 UTC 2012


*** This bug is a security vulnerability ***

Public security bug reported:

This bug is for tracking the quagga security update:

    - Denial of service via short Link State Update packet
    - Denial of service via short network-LSA link-state advertisement
    - Denial of service via malformed Four-octet AS Number Capability
    - CVE-2012-0249
    - CVE-2012-0250
    - CVE-2012-0255

** Affects: quagga (Ubuntu)
     Importance: Medium
         Status: Fix Released

** Affects: quagga (Ubuntu Lucid)
     Importance: Medium
     Assignee: Marc Deslauriers (mdeslaur)
         Status: Confirmed

** Affects: quagga (Ubuntu Natty)
     Importance: Medium
     Assignee: Marc Deslauriers (mdeslaur)
         Status: Confirmed

** Affects: quagga (Ubuntu Oneiric)
     Importance: Medium
     Assignee: Marc Deslauriers (mdeslaur)
         Status: Confirmed

** Affects: quagga (Ubuntu Precise)
     Importance: Medium
     Assignee: Marc Deslauriers (mdeslaur)
         Status: Confirmed

** Affects: quagga (Ubuntu Quantal)
     Importance: Medium
         Status: Fix Released

** Visibility changed to: Public

** Also affects: quagga (Ubuntu Lucid)
   Importance: Undecided
       Status: New

** Also affects: quagga (Ubuntu Natty)
   Importance: Undecided
       Status: New

** Also affects: quagga (Ubuntu Oneiric)
   Importance: Undecided
       Status: New

** Also affects: quagga (Ubuntu Quantal)
   Importance: Undecided
       Status: New

** Also affects: quagga (Ubuntu Precise)
   Importance: Undecided
       Status: New

** Changed in: quagga (Ubuntu Quantal)
       Status: New => Fix Released

** Changed in: quagga (Ubuntu Lucid)
       Status: New => Confirmed

** Changed in: quagga (Ubuntu Natty)
       Status: New => Confirmed

** Changed in: quagga (Ubuntu Oneiric)
       Status: New => Confirmed

** Changed in: quagga (Ubuntu Precise)
       Status: New => Confirmed

** Changed in: quagga (Ubuntu Lucid)
     Assignee: (unassigned) => Marc Deslauriers (mdeslaur)

** Changed in: quagga (Ubuntu Natty)
     Assignee: (unassigned) => Marc Deslauriers (mdeslaur)

** Changed in: quagga (Ubuntu Oneiric)
     Assignee: (unassigned) => Marc Deslauriers (mdeslaur)

** Changed in: quagga (Ubuntu Precise)
     Assignee: (unassigned) => Marc Deslauriers (mdeslaur)

** Changed in: quagga (Ubuntu Lucid)
   Importance: Undecided => Medium

** Changed in: quagga (Ubuntu Natty)
   Importance: Undecided => Medium

** Changed in: quagga (Ubuntu Oneiric)
   Importance: Undecided => Medium

** Changed in: quagga (Ubuntu Precise)
   Importance: Undecided => Medium

** Changed in: quagga (Ubuntu Quantal)
   Importance: Undecided => Medium

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-0249

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-0250

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-0255

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to quagga in Ubuntu.
https://bugs.launchpad.net/bugs/994169

Title:
  quagga security update tracking bug

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/quagga/+bug/994169/+subscriptions



More information about the Ubuntu-server-bugs mailing list