Описание
An issue was discovered in FRRouting (FRR) through 10.1. bgp_attr_encap in bgpd/bgp_attr.c does not check the actual remaining stream length before taking the TLV value.
Ссылки
- Issue TrackingPatch
Уязвимые конфигурации
Конфигурация 1Версия до 10.1 (включая)
cpe:2.3:a:frrouting:frrouting:*:*:*:*:*:*:*:*
Конфигурация 2
Одно из
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*
EPSS
Процентиль: 52%
0.00286
Низкий
7.5 High
CVSS3
9.8 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 7.5
ubuntu
10 месяцев назад
An issue was discovered in FRRouting (FRR) through 10.1. bgp_attr_encap in bgpd/bgp_attr.c does not check the actual remaining stream length before taking the TLV value.
CVSS3: 7.5
redhat
10 месяцев назад
An issue was discovered in FRRouting (FRR) through 10.1. bgp_attr_encap in bgpd/bgp_attr.c does not check the actual remaining stream length before taking the TLV value.
CVSS3: 7.5
debian
10 месяцев назад
An issue was discovered in FRRouting (FRR) through 10.1. bgp_attr_enca ...
EPSS
Процентиль: 52%
0.00286
Низкий
7.5 High
CVSS3
9.8 Critical
CVSS3
Дефекты
NVD-CWE-noinfo