Fw: [oss-security] BIRD/BIRD2: stack buffer overflow in BGP AS_PATH mask matching, CVE pending

Bruce Duncan Bruce.Duncan at ed.ac.uk
Tue Jun 2 20:11:12 CEST 2026


Hi,

Long time lurker, first time poster.

FYI, since I didn't see anything about this, I thought operators might
want to be aware that a "vulnerability" has been disclosed on the
oss-security list today, and this might cause managers/auditors to ask
you probing questions.

Hope that's helpful to someone.

Bruce
The University of Edinburgh is a charitable body, registered in Scotland, with registration number SC005336. Is e buidheann carthannais a th’ ann an Oilthigh Dhùn Èideann, clàraichte an Alba, àireamh clàraidh SC005336.
-------------- next part --------------
An embedded message was scrubbed...
From: Bakabaka_9 <qilunuobakabaka9 at gmail.com>
Subject: [oss-security] BIRD/BIRD2: stack buffer overflow in BGP AS_PATH mask matching, CVE pending
Date: Tue, 2 Jun 2026 10:07:29 +0800
Size: 19696
URL: <http://trubka.network.cz/pipermail/bird-users/attachments/20260602/342bdfbe/attachment.eml>


More information about the Bird-users mailing list