CVE-2023-38407

bgpd/bgp_label.c in FRRouting (FRR) before 8.5 attempts to read beyond the end of the stream during labeled unicast parsing.
Configurations

Configuration 1 (hide)

cpe:2.3:a:frrouting:frrouting:*:*:*:*:*:*:*:*

History

28 Apr 2024, 07:15

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2024/04/msg00019.html -

14 Nov 2023, 17:38

Type Values Removed Values Added
References (MISC) https://github.com/FRRouting/frr/pull/12956 - (MISC) https://github.com/FRRouting/frr/pull/12956 - Patch
References (MISC) https://github.com/FRRouting/frr/compare/frr-8.5-rc...frr-8.5 - (MISC) https://github.com/FRRouting/frr/compare/frr-8.5-rc...frr-8.5 - Patch
References (MISC) https://github.com/FRRouting/frr/pull/12951 - (MISC) https://github.com/FRRouting/frr/pull/12951 - Patch
First Time Frrouting frrouting
Frrouting
CPE cpe:2.3:a:frrouting:frrouting:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE NVD-CWE-noinfo

06 Nov 2023, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-06 06:15

Updated : 2024-04-28 07:15


NVD link : CVE-2023-38407

Mitre link : CVE-2023-38407

CVE.ORG link : CVE-2023-38407


JSON object : View

Products Affected

frrouting

  • frrouting