Nic Bird vulnerabilities
2 known vulnerabilities affecting nic/bird.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2021-26928MEDIUMCVSS 6.8≤ 2.0.72021-06-04
CVE-2021-26928 [MEDIUM] CWE-306 CVE-2021-26928: BIRD through 2.0.7 does not provide functionality for password authentication of BGP peers. Because
BIRD through 2.0.7 does not provide functionality for password authentication of BGP peers. Because of this, products that use BIRD (which may, for example, include Tigera products in some configurations, as well as products of other vendors) may have been susceptible to route redirection for Denial of Service and/or Information Disclosure. NOTE: a r
nvd
CVE-2019-16159HIGHCVSS 7.5≥ 1.6.0, ≤ 1.6.7≥ 2.0.0, ≤ 2.0.52019-09-09
CVE-2019-16159 [HIGH] CWE-787 CVE-2019-16159: BIRD Internet Routing Daemon 1.6.x through 1.6.7 and 2.x through 2.0.5 has a stack-based buffer over
BIRD Internet Routing Daemon 1.6.x through 1.6.7 and 2.x through 2.0.5 has a stack-based buffer overflow. The BGP daemon's support for RFC 8203 administrative shutdown communication messages included an incorrect logical expression when checking the validity of an input message. Sending a shutdown communication with a sufficient message length causes
nvd