Comments on CVE-2021-26928?

William bird at is.unlawful.id.au
Thu Mar 9 05:14:13 CET 2023


On 09/03/2023 13:41, Robert Scheck wrote:
> Hello,
> 
> with https://bugzilla.redhat.com/show_bug.cgi?id=2176483, Red Hat 
> pointed
> me today to CVE-2021-26928. 
> https://nvd.nist.gov/vuln/detail/CVE-2021-26928
> contains a reference to BIRD 2.0.7, but no link related to BIRD 
> upstream.
> 
> Do you see any chance for some comments on it (at least here)? Not sure 
> if
> MITRE adds it then as references at CVE-2021-26928.

I have a PDF of the Bird help documentation that I saved in 2019 
(Fossies) that lists password authentication mechanisms as per RFC2385 
with extra options for BSD systems.  I'll defer to the Dev team on this 
for the final word, but someone has some crossed wires here.

> 
> Thank you.
> 
> 
> Regards,
>   Robert

Regards,
William


More information about the Bird-users mailing list