Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-37458

Опубликовано: 04 мая 2026
Источник: debian
EPSS Низкий

Описание

Missing input validation in the MP_REACH_NLRI component of FRRouting (FRR) stable/10.0 to stable/10.6 allows authenticated attackers to cause a Denial of Service (DoS) via supplying a crafted UPDATE message.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
frrfixed10.6.0-2package

Примечания

  • https://github.com/FRRouting/frr/commit/8102a8aeceb9f86fdfe1f80cd77080522bab69c8 (master)

  • https://github.com/FRRouting/frr/commit/638ee72802b159056234400037421cc5749185be (frr-10.6.0)

EPSS

Процентиль: 16%
0.00249
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
3 месяца назад

Missing input validation in the MP_REACH_NLRI component of FRRouting (FRR) stable/10.0 to stable/10.6 allows authenticated attackers to cause a Denial of Service (DoS) via supplying a crafted UPDATE message.

CVSS3: 6.5
redhat
3 месяца назад

Missing input validation in the MP_REACH_NLRI component of FRRouting (FRR) stable/10.0 to stable/10.6 allows authenticated attackers to cause a Denial of Service (DoS) via supplying a crafted UPDATE message.

CVSS3: 6.5
nvd
3 месяца назад

Missing input validation in the MP_REACH_NLRI component of FRRouting (FRR) stable/10.0 to stable/10.6 allows authenticated attackers to cause a Denial of Service (DoS) via supplying a crafted UPDATE message.

msrc
3 месяца назад

Missing input validation in the MP_REACH_NLRI component of FRRouting (FRR) stable/10.0 to stable/10.6 allows authenticated attackers to cause a Denial of Service (DoS) via supplying a crafted UPDATE message.

CVSS3: 6.5
github
3 месяца назад

Missing input validation in the MP_REACH_NLRI component of FRRouting (FRR) stable/10.0 to stable/10.6 allows authenticated attackers to cause a Denial of Service (DoS) via supplying a crafted UPDATE message.

EPSS

Процентиль: 16%
0.00249
Низкий