Описание
ELSA-2026-24371: frr security update (IMPORTANT)
[8.5.3-13]
- Resolves: RHEL-174677 - denial of service via crafted FlowSpec component
Обновленные пакеты
Oracle Linux 9
Oracle Linux aarch64
frr
8.5.3-13.el9_8
frr-selinux
8.5.3-13.el9_8
Oracle Linux x86_64
frr
8.5.3-13.el9_8
frr-selinux
8.5.3-13.el9_8
Связанные CVE
Связанные уязвимости
An off-by-one out-of-bounds write vulnerability in the bgp_flowspec_op_decode() function (bgpd/bgp_flowspec_util.c) of FRRouting (FRR) stable/10.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted FlowSpec component.
An off-by-one out-of-bounds write vulnerability in the bgp_flowspec_op_decode() function (bgpd/bgp_flowspec_util.c) of FRRouting (FRR) stable/10.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted FlowSpec component.
An off-by-one out-of-bounds write vulnerability in the bgp_flowspec_op_decode() function (bgpd/bgp_flowspec_util.c) of FRRouting (FRR) stable/10.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted FlowSpec component.
An off-by-one out-of-bounds write vulnerability in the bgp_flowspec_op_decode() function (bgpd/bgp_flowspec_util.c) of FRRouting (FRR) stable/10.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted FlowSpec component.
An off-by-one out-of-bounds write vulnerability in the bgp_flowspec_op ...