ICANN/GNSO GNSO Email List Archives

[ga]


<<< Chronological Index >>>    <<< Thread Index >>>

[ga] OpenBSD bgpd Remote Denial of Service problem

  • To: Ga <ga@xxxxxxxxxxxxxx>
  • Subject: [ga] OpenBSD bgpd Remote Denial of Service problem
  • From: "Jeffrey A. Williams" <jwkckid1@xxxxxxxxxxxxx>
  • Date: Wed, 25 Feb 2009 18:18:50 -0800

All,

  As an FYI, See:

09.9.19 CVE: Not Available
Platform: BSD
Title: OpenBSD bgpd Remote Denial of Service
Description: OpenBSD Border Gateway Protocol daemon (bgpd) is exposed
to a remote denial of service issue when processing long Autonomous
System (AS) paths. This issue affects the "aspath_prepend()" function
of the "usr.sbin/bgpd/rde_attr.c" source file and arises because the
application does not correctly prepend its own AS to very long AS
paths. OpenBSD versions 4.4 and 4.3 are affected.
Ref: http://www.openbsd.org/errata44.html

Regards,

Spokesman for INEGroup LLA. - (Over 284k members/stakeholders strong!)
"Obedience of the law is the greatest freedom" -
   Abraham Lincoln
"YES WE CAN!"  Barack ( Berry ) Obama

"Credit should go with the performance of duty and not with what is
very often the accident of glory" - Theodore Roosevelt

"If the probability be called P; the injury, L; and the burden, B;
liability depends upon whether B is less than L multiplied by
P: i.e., whether B is less than PL."
United States v. Carroll Towing  (159 F.2d 169 [2d Cir. 1947]
===============================================================
Updated 1/26/04
CSO/DIR. Internet Network Eng. SR. Eng. Network data security IDNS.
div. of Information Network Eng.  INEG. INC.
ABA member in good standing member ID 01257402 E-Mail
jwkckid1@xxxxxxxxxxxxx
My Phone: 214-244-4827




<<< Chronological Index >>>    <<< Thread Index >>>