CVE-2013-7308
5.4
Vector
AV:A/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 5.5 / Impact: 6.4
Source: NVD
Description
The OSPF implementation on the D-Link DES-3810-28 switch with firmware R2.20.B017 does not consider the possibility of duplicate Link State ID values in Link State Advertisement (LSA) packets before performing operations on the LSA database, which allows remote attackers to cause a denial of service (routing disruption) or obtain sensitive packet information via a crafted LSA packet, a related issue to CVE-2013-0149.
Affected (2)
Products: Dlink: Des 3810 28 Firmware, Des 3810 28
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version r2.20.b017 | |
| All versions |
References (4)
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.