BGP Peering Vulnerability in BIRD Software by Tigera
CVE-2021-26928
6.8MEDIUM
What is CVE-2021-26928?
The BIRD software prior to version 2.0.7 lacks essential password authentication for BGP peers, making it vulnerable to potential route redirection attacks. This can lead to Denial of Service (DoS) scenarios or the unintentional disclosure of sensitive information. Although Tigera claims the observed behavior falls outside their responsibility, it is important for users of affected BIRD configurations to consider their exposure to these risks.
