quagga 1.2.4-4ubuntu0.4 source package in Ubuntu

Changelog

quagga (1.2.4-4ubuntu0.4) focal-security; urgency=medium

  * SECURITY UPDATE: DoS via out-of-bounds read
    - debian/patches/CVE-2022-37032.patch: don't memcpy past end of buffer
      in bgpd/bgp_packet.c.
    - CVE-2022-37032
  * SECURITY UPDATE: DoS via BGP UPDATE without mandatory attributes
    - debian/patches/CVE-2023-46753.patch: check mandatory attributes more
      carefully for UPDATE message in bgpd/bgp_attr.c.
    - CVE-2023-46753

 -- Marc Deslauriers <email address hidden>  Wed, 01 Nov 2023 14:49:20 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Focal
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
net
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Focal updates main net
Focal security main net

Downloads

File Size SHA-256 Checksum
quagga_1.2.4.orig.tar.gz 2.8 MiB 4d1b28f215c661deab421c744b0502aadeac90b3497db3bf2bf454fcf339281f
quagga_1.2.4-4ubuntu0.4.debian.tar.xz 34.0 KiB 39994efa37e6eda5eea8875e04b1c00b13ff10702f9f40d372599259ff40f35a
quagga_1.2.4-4ubuntu0.4.dsc 2.6 KiB 2687cde8744d5c0e910760e67afe42d3c8a8b829293ac99a7fa6426cdc5a9fda

View changes file

Binary packages built by this source

quagga: network routing daemons (metapackage)

 GNU Quagga is free software which manages TCP/IP based routing protocols.
 It supports BGP4, BGP4+, OSPFv2, OSPFv3, IS-IS, RIPv1, RIPv2, and RIPng as
 well as the IPv6 versions of these.
 .
 As the predecessor Zebra has been considered orphaned, the Quagga project
 has been formed by members of the zebra mailing list and the former
 zebra-pj project to continue developing.
 .
 Quagga uses threading if the kernel supports it, but can also run on
 kernels that do not support threading. Each protocol has its own daemon.
 .
 It is more than a routed replacement, it can be used as a Route Server and
 a Route Reflector.
 .
 This metapackage depends on the full suite of Quagga routing daemons.

quagga-bgpd: BGP4/BGP4+ routing daemon

 GNU Quagga is free software which manages TCP/IP based routing protocols.
 It supports BGP4, BGP4+, OSPFv2, OSPFv3, IS-IS, RIPv1, RIPv2, and RIPng as
 well as the IPv6 versions of these.
 .
 This package contains the BGP4/BGP4+ routing daemon.

quagga-bgpd-dbgsym: debug symbols for quagga-bgpd
quagga-core: network routing daemons (core abstraction layer)

 GNU Quagga is free software which manages TCP/IP based routing protocols.
 It supports BGP4, BGP4+, OSPFv2, OSPFv3, IS-IS, RIPv1, RIPv2, and RIPng as
 well as the IPv6 versions of these.
 .
 As the predecessor Zebra has been considered orphaned, the Quagga project
 has been formed by members of the zebra mailing list and the former
 zebra-pj project to continue developing.
 .
 Quagga uses threading if the kernel supports it, but can also run on
 kernels that do not support threading. Each protocol has its own daemon.
 .
 It is more than a routed replacement, it can be used as a Route Server and
 a Route Reflector.
 .
 This package provides the zebra daemon, vtysh shell, and framework used by the
 protocol-specific daemons.

quagga-core-dbgsym: debug symbols for quagga-core
quagga-doc: network routing daemons (documentation)

 GNU Quagga is free software which manages TCP/IP based routing protocols.
 It supports BGP4, BGP4+, OSPFv2, OSPFv3, IS-IS, RIPv1, RIPv2, and RIPng as
 well as the IPv6 versions of these.
 .
 This package contains the extended documentation.

quagga-isisd: IS-IS routing daemon

 GNU Quagga is free software which manages TCP/IP based routing protocols.
 It supports BGP4, BGP4+, OSPFv2, OSPFv3, IS-IS, RIPv1, RIPv2, and RIPng as
 well as the IPv6 versions of these.
 .
 This package contains the IS-IS routing daemon.

quagga-isisd-dbgsym: debug symbols for quagga-isisd
quagga-ospf6d: OSPF6 routing daemon

 GNU Quagga is free software which manages TCP/IP based routing protocols.
 It supports BGP4, BGP4+, OSPFv2, OSPFv3, IS-IS, RIPv1, RIPv2, and RIPng as
 well as the IPv6 versions of these.
 .
 This package contains the OSPF6 routing daemon.

quagga-ospf6d-dbgsym: debug symbols for quagga-ospf6d
quagga-ospfd: OSPF routing daemon

 GNU Quagga is free software which manages TCP/IP based routing protocols.
 It supports BGP4, BGP4+, OSPFv2, OSPFv3, IS-IS, RIPv1, RIPv2, and RIPng as
 well as the IPv6 versions of these.
 .
 This package contains the OSPF routing daemon.

quagga-ospfd-dbgsym: debug symbols for quagga-ospfd
quagga-pimd: PIM routing daemon

 GNU Quagga is free software which manages TCP/IP based routing protocols.
 It supports BGP4, BGP4+, OSPFv2, OSPFv3, IS-IS, RIPv1, RIPv2, and RIPng as
 well as the IPv6 versions of these.
 .
 This package contains the PIM routing daemon.

quagga-pimd-dbgsym: debug symbols for quagga-pimd
quagga-ripd: RIPv1 routing daemon

 GNU Quagga is free software which manages TCP/IP based routing protocols.
 It supports BGP4, BGP4+, OSPFv2, OSPFv3, IS-IS, RIPv1, RIPv2, and RIPng as
 well as the IPv6 versions of these.
 .
 This package contains the RIPv1/RIPv2 routing daemon.

quagga-ripd-dbgsym: debug symbols for quagga-ripd
quagga-ripngd: RIPng routing daemon

 GNU Quagga is free software which manages TCP/IP based routing protocols.
 It supports BGP4, BGP4+, OSPFv2, OSPFv3, IS-IS, RIPv1, RIPv2, and RIPng as
 well as the IPv6 versions of these.
 .
 This package contains the RIPng routing daemon.

quagga-ripngd-dbgsym: debug symbols for quagga-ripngd