[Bug 994169] Re: quagga security update tracking bug

Launchpad Bug Tracker 994169 at bugs.launchpad.net
Tue May 15 12:28:00 UTC 2012


This bug was fixed in the package quagga - 0.99.20.1-0ubuntu0.11.10.2

---------------
quagga (0.99.20.1-0ubuntu0.11.10.2) oneiric-security; urgency=low

  * SECURITY UPDATE: Update to 0.99.20.1 to fix multiple security issues.
    (LP: #994169)
    - Denial of service via short Link State Update packet
    - Denial of service via short network-LSA link-state advertisement
    - Denial of service via malformed Four-octet AS Number Capability
    - CVE-2012-0249
    - CVE-2012-0250
    - CVE-2012-0255
  * debian/control, debian/rules: Remove quagga-dbg package for Oneiric.
  * debian/patches/99_bgpd-fix-memory-leak-for-extra-attributes.diff:
    added fix for a bgpd memory leak related to extra attributes. Thanks to
    Debian for the regression fix.
 -- Marc Deslauriers <marc.deslauriers at ubuntu.com>   Sat, 05 May 2012 17:03:18 -0400

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to quagga in Ubuntu.
https://bugs.launchpad.net/bugs/994169

Title:
  quagga security update tracking bug

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/quagga/+bug/994169/+subscriptions



More information about the Ubuntu-server-bugs mailing list