OSPF Implementation Vulnerability in Extreme Networks EXOS
CVE-2013-7309

Currently unrated

Key Information:

Status
Vendor
CVE Published:
23 January 2014

What is CVE-2013-7309?

The OSPF implementation within Extreme Networks EXOS has a flaw that does not adequately handle duplicate Link State ID values present in Link State Advertisement (LSA) packets. This oversight can be exploited by remote attackers, leading to the potential disruption of routing functions or the exposure of sensitive packet information through specially crafted LSA packets. This vulnerability raises significant concerns about the integrity and availability of network communications.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.