CVE-2023-47235

An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when a malformed BGP UPDATE message with an EOR is processed, because the presence of EOR does not lead to a treat-as-withdraw outcome.
Configurations

Configuration 1 (hide)

cpe:2.3:a:frrouting:frrouting:*:*:*:*:*:*:*:*

History

28 Apr 2024, 07:15

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2024/04/msg00019.html -

14 Nov 2023, 14:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CPE cpe:2.3:a:frrouting:frrouting:*:*:*:*:*:*:*:*
First Time Frrouting frrouting
Frrouting
CWE NVD-CWE-noinfo
References (MISC) https://github.com/FRRouting/frr/pull/14716/commits/6814f2e0138a6ea5e1f83bdd9085d9a77999900b - (MISC) https://github.com/FRRouting/frr/pull/14716/commits/6814f2e0138a6ea5e1f83bdd9085d9a77999900b - Patch

03 Nov 2023, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-03 21:15

Updated : 2024-04-28 07:15


NVD link : CVE-2023-47235

Mitre link : CVE-2023-47235

CVE.ORG link : CVE-2023-47235


JSON object : View

Products Affected

frrouting

  • frrouting