Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-47235

Опубликовано: 03 нояб. 2023
Источник: debian
EPSS Низкий

Описание

An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when a malformed BGP UPDATE message with an EOR is processed, because the presence of EOR does not lead to a treat-as-withdraw outcome.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
frrfixed9.1-0.1package

Примечания

  • https://github.com/FRRouting/frr/commit/6814f2e0138a6ea5e1f83bdd9085d9a77999900b

  • https://github.com/FRRouting/frr/pull/14716

  • https://github.com/FRRouting/frr/pull/14861 (backport to 9.0)

  • https://github.com/FRRouting/frr/pull/14735 (backport to 9.1)

EPSS

Процентиль: 29%
0.00099
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 1 года назад

An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when a malformed BGP UPDATE message with an EOR is processed, because the presence of EOR does not lead to a treat-as-withdraw outcome.

CVSS3: 7.5
redhat
больше 1 года назад

An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when a malformed BGP UPDATE message with an EOR is processed, because the presence of EOR does not lead to a treat-as-withdraw outcome.

CVSS3: 7.5
nvd
больше 1 года назад

An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when a malformed BGP UPDATE message with an EOR is processed, because the presence of EOR does not lead to a treat-as-withdraw outcome.

CVSS3: 7.5
msrc
больше 1 года назад

Описание отсутствует

CVSS3: 7.5
github
больше 1 года назад

An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when a malformed BGP UPDATE message with an EOR is processed, because the presence of EOR does not lead to a treat-as-withdraw outcome.

EPSS

Процентиль: 29%
0.00099
Низкий