CVE-2023-41361
- EPSS 0.38%
- Veröffentlicht 29.08.2023 04:15:17
- Zuletzt bearbeitet 21.11.2024 08:21:09
An issue was discovered in FRRouting FRR 9.0. bgpd/bgp_open.c does not check for an overly large length of the rcv software version.
CVE-2023-41360
- EPSS 0.28%
- Veröffentlicht 29.08.2023 04:15:16
- Zuletzt bearbeitet 21.11.2024 08:21:09
An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c can read the initial byte of the ORF header in an ahead-of-stream situation.
CVE-2023-41359
- EPSS 0.19%
- Veröffentlicht 29.08.2023 04:15:16
- Zuletzt bearbeitet 21.11.2024 08:21:08
An issue was discovered in FRRouting FRR through 9.0. There is an out-of-bounds read in bgp_attr_aigp_valid in bgpd/bgp_attr.c because there is no check for the availability of two bytes during AIGP validation.
CVE-2023-41358
- EPSS 0.4%
- Veröffentlicht 29.08.2023 04:15:16
- Zuletzt bearbeitet 21.11.2024 08:21:08
An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c processes NLRIs if the attribute length is zero.
CVE-2023-3748
- EPSS 0.07%
- Veröffentlicht 24.07.2023 16:15:13
- Zuletzt bearbeitet 21.11.2024 08:17:58
A flaw was found in FRRouting when parsing certain babeld unicast hello messages that are intended to be ignored. This issue may allow an attacker to send specially crafted hello messages with the unicast flag set, the interval field set to 0, or any...
CVE-2023-31489
- EPSS 0.33%
- Veröffentlicht 09.05.2023 16:15:14
- Zuletzt bearbeitet 21.11.2024 08:01:58
An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_capability_llgr() function.
CVE-2023-31490
- EPSS 4.91%
- Veröffentlicht 09.05.2023 16:15:14
- Zuletzt bearbeitet 21.11.2024 08:01:58
An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_attr_psid_sub() function.
CVE-2022-43681
- EPSS 0.13%
- Veröffentlicht 03.05.2023 12:16:30
- Zuletzt bearbeitet 21.11.2024 07:27:01
An out-of-bounds read exists in the BGP daemon of FRRouting FRR through 8.4. When sending a malformed BGP OPEN message that ends with the option length octet (or the option length word, in case of an extended OPEN message), the FRR code reads of out ...
CVE-2022-40318
- EPSS 0.13%
- Veröffentlicht 03.05.2023 12:16:27
- Zuletzt bearbeitet 21.11.2024 07:21:18
An issue was discovered in bgpd in FRRouting (FRR) through 8.4. By crafting a BGP OPEN message with an option of type 0xff (Extended Length from RFC 9072), attackers may cause a denial of service (assertion failure and daemon restart, or out-of-bound...
CVE-2022-40302
- EPSS 0.17%
- Veröffentlicht 03.05.2023 12:16:27
- Zuletzt bearbeitet 30.01.2025 17:15:11
An issue was discovered in bgpd in FRRouting (FRR) through 8.4. By crafting a BGP OPEN message with an option of type 0xff (Extended Length from RFC 9072), attackers may cause a denial of service (assertion failure and daemon restart, or out-of-bound...