Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-2801

Опубликовано: 24 мая 2023
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2023-2801: frr security and bug fix update (MODERATE)

[7.5.1-7.0.1]

  • Fix POSTIN scriptlet [Orabug: 34712485]

[7.5.1-7]

  • Resolves: #2128737 - out-of-bounds read in the BGP daemon may lead to information disclosure or denial of service

[7.5.1-6]

  • Resolves: #1939516 - frr service cannot reload itself, due to executing in the wrong SELinux context

[7.5.1-5]

  • Resolves: #2127140 - Frr is unable to push routes to the system routing table

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

frr

7.5.1-7.0.1.el8

frr-selinux

7.5.1-7.0.1.el8

Oracle Linux x86_64

frr

7.5.1-7.0.1.el8

frr-selinux

7.5.1-7.0.1.el8

Связанные CVE

Связанные уязвимости

CVSS3: 9.1
ubuntu
почти 3 года назад

An out-of-bounds read in the BGP daemon of FRRouting FRR before 8.4 may lead to a segmentation fault and denial of service. This occurs in bgp_capability_msg_parse in bgpd/bgp_packet.c.

CVSS3: 7.1
redhat
почти 3 года назад

An out-of-bounds read in the BGP daemon of FRRouting FRR before 8.4 may lead to a segmentation fault and denial of service. This occurs in bgp_capability_msg_parse in bgpd/bgp_packet.c.

CVSS3: 9.1
nvd
почти 3 года назад

An out-of-bounds read in the BGP daemon of FRRouting FRR before 8.4 may lead to a segmentation fault and denial of service. This occurs in bgp_capability_msg_parse in bgpd/bgp_packet.c.

CVSS3: 9.1
debian
почти 3 года назад

An out-of-bounds read in the BGP daemon of FRRouting FRR before 8.4 ma ...

CVSS3: 9.1
github
почти 3 года назад

An out-of-bounds read in the BGP daemon of FRRouting FRR before 8.4 may lead to a segmentation fault and denial of service. This occurs in bgp_capability_msg_parse in bgpd/bgp_packet.c.