Frrouting

Frrouting

45 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.14%
  • Veröffentlicht 03.11.2023 21:15:17
  • Zuletzt bearbeitet 04.11.2025 17:15:38

An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when processing a crafted BGP UPDATE message with a MP_UNREACH_NLRI attribute and additional NLRI data (that lacks mandatory path attributes).

  • EPSS 0.11%
  • Veröffentlicht 26.10.2023 05:15:26
  • Zuletzt bearbeitet 04.11.2025 17:15:38

An issue was discovered in FRRouting FRR through 9.0.1. It mishandles malformed MP_REACH_NLRI data, leading to a crash.

  • EPSS 0.1%
  • Veröffentlicht 26.10.2023 05:15:26
  • Zuletzt bearbeitet 04.11.2025 17:15:38

An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur for a crafted BGP UPDATE message without mandatory attributes, e.g., one with only an unknown transit attribute.

  • EPSS 0.08%
  • Veröffentlicht 05.09.2023 07:15:14
  • Zuletzt bearbeitet 21.11.2024 08:21:53

An issue was discovered in FRRouting FRR through 9.0. bgp_nlri_parse_flowspec in bgpd/bgp_flowspec.c processes malformed requests with no attributes, leading to a NULL pointer dereference.

Exploit
  • EPSS 0.77%
  • Veröffentlicht 29.08.2023 16:15:09
  • Zuletzt bearbeitet 21.11.2024 08:14:13

FRRouting FRR 7.5.1 through 9.0 and Pica8 PICOS 4.3.3.2 allow a remote attacker to cause a denial of service via a crafted BGP update with a corrupted attribute 23 (Tunnel Encapsulation).

  • EPSS 0.38%
  • Veröffentlicht 29.08.2023 04:15:17
  • Zuletzt bearbeitet 21.11.2024 08:21:09

An issue was discovered in FRRouting FRR 9.0. bgpd/bgp_open.c does not check for an overly large length of the rcv software version.

  • EPSS 0.24%
  • Veröffentlicht 29.08.2023 04:15:16
  • Zuletzt bearbeitet 21.11.2024 08:21:09

An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c can read the initial byte of the ORF header in an ahead-of-stream situation.

  • EPSS 0.19%
  • Veröffentlicht 29.08.2023 04:15:16
  • Zuletzt bearbeitet 21.11.2024 08:21:08

An issue was discovered in FRRouting FRR through 9.0. There is an out-of-bounds read in bgp_attr_aigp_valid in bgpd/bgp_attr.c because there is no check for the availability of two bytes during AIGP validation.

  • EPSS 0.35%
  • Veröffentlicht 29.08.2023 04:15:16
  • Zuletzt bearbeitet 21.11.2024 08:21:08

An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c processes NLRIs if the attribute length is zero.

  • EPSS 0.02%
  • Veröffentlicht 24.07.2023 16:15:13
  • Zuletzt bearbeitet 21.11.2024 08:17:58

A flaw was found in FRRouting when parsing certain babeld unicast hello messages that are intended to be ignored. This issue may allow an attacker to send specially crafted hello messages with the unicast flag set, the interval field set to 0, or any...