MNBSD-2014-14: routed remote routing table disruption

Severity: Unknown

Affected Package: routed

Summary: routed remote routing table disruption

Description

The input path in routed(8) accepted queries from any source and attempted to answer them, while the output path assumed the response destination was on a directly connected network. An attacker sending traffic from outside the network could disrupt routing, causing a denial of service.

Affected Versions

routed

Recommendations

No specific recommendations provided.

References

Additional Information

Aliases: CVE-2014-3955

Published: October 21, 2014
Last Modified: October 21, 2014