A public disclosure on the oss-sec mailing list reported a stack buffer overflow in BIRD/BIRD2 tied to BGP AS_PATH mask matching, with a CVE still pending and no confirmed fixed release. Researcher comments in the thread said BIRD 2.16.2 was reproduced as vulnerable, while other BIRD 2.x versions may also be affected if they use the same implementation. The discussion also highlighted conflicting views on remediation status: the reporter said maintainers indicated they did not currently plan to fix the issue, while other participants challenged whether the claim that no fix existed had been sufficiently validated against newer versions or unpublished changes.
Separately, GNU FreeIPMI 1.6.18 was released with security fixes for exploitable buffer overflows in OEM-specific ipmi-oem functionality. The project said the affected commands were ipmi-oem dell get-active-directory-config and ipmi-oem fujitsu get-sel-entry-long-text; the release also added an altbridging workaround in ipmi-sensors. An oss-sec post noted that no new CVE appeared to have been assigned for these FreeIPMI flaws at publication time and clarified that CVE-2026-33554 referred to different subcommands fixed earlier in FreeIPMI 1.6.17.

See affected versions and whether adversaries are exploiting it.
3 events from the most recent confirmed update back to the earliest known activity.
GNU FreeIPMI released version 1.6.18 on 2026-06-02. The release fixed exploitable buffer overflows in the `ipmi-oem dell get-active-directory-config` and `ipmi-oem fujitsu get-sel-entry-long-text` commands.
An early-stage public disclosure on oss-sec described a stack buffer overflow in BIRD/BIRD2 related to BGP AS_PATH mask matching. The discussion said BIRD 2.16.2 was confirmed affected, other 2.x versions might also be affected, and no fixed version was known at disclosure time.
According to the oss-sec discussion, upstream told the reporter on 2026-05-24 that they did not currently plan to fix the reported BIRD/BIRD2 stack buffer overflow in BGP AS_PATH mask matching.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
8 references tracked. Mallory keeps watching after this page renders.
seclists.org
Open sourceseclists.org
Open sourceseclists.org
Open sourceseclists.org
Open sourcesavannah.gnu.org
Open sourceseclists.org
Open sourceseclists.org
Open sourceseclists.org
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.