[CLSA-2025:1738265190] Fix CVE(s): CVE-2024-44070
Type:
security
Severity:
Important
Release date:
2025-01-30 19:26:36 UTC
Description:
* SECURITY UPDATE: Improper handling of TLV values in bgp_attr_encap - debian/patches/CVE-2024-44070.patch: check actual remaining stream length before taking TLV value - CVE-2024-44070
Updated packages:
  • quagga_1.2.4-1+tuxcare.els3_amd64.deb
    sha:f5ec32093b56501d265e1c5429e0d5bebdeed983
  • quagga-bgpd_1.2.4-1+tuxcare.els3_amd64.deb
    sha:a977985a5efbd3d932c76903da4aefec0031b823
  • quagga-core_1.2.4-1+tuxcare.els3_amd64.deb
    sha:470ec9424fe9237de903b36f08813142be31a8a6
  • quagga-doc_1.2.4-1+tuxcare.els3_all.deb
    sha:0b645dfd0365c0a166c842af72b3e7814543adb8
  • quagga-isisd_1.2.4-1+tuxcare.els3_amd64.deb
    sha:29e9f0cd3e89ae856c1b5b7513106b389c5115b3
  • quagga-ospf6d_1.2.4-1+tuxcare.els3_amd64.deb
    sha:43ee3c7d42fcd5a06573ba8964e7e1f6e676d22e
  • quagga-ospfd_1.2.4-1+tuxcare.els3_amd64.deb
    sha:79fc1e8b03ba2dc8132fa228030cdd49827ade1e
  • quagga-pimd_1.2.4-1+tuxcare.els3_amd64.deb
    sha:d5547b456d0da32ffa1b6dbe05340b058a305677
  • quagga-ripd_1.2.4-1+tuxcare.els3_amd64.deb
    sha:c0a59bd33092513b90d2f399544e38ff13f245ba
  • quagga-ripngd_1.2.4-1+tuxcare.els3_amd64.deb
    sha:1bb44b5b85cdb187fbd4b9e90656647c494d67b8
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.