Описание
ELSA-2026-49607: frr10 security, bug fix, and enhancement update (IMPORTANT)
[10.4.3-3.2]
- Resolves: RHEL-222338 - AVC when reading user's site-packages
[10.4.3-3.1]
- Fix CVE-2026-37460: improve packet parsing for EVPN and ENCAP/VNC
- Resolves: RHEL-193232
Обновленные пакеты
Oracle Linux 9
Oracle Linux aarch64
frr10
10.4.3-3.el9_8.2
frr10-selinux
10.4.3-3.el9_8.2
Oracle Linux x86_64
frr10
10.4.3-3.el9_8.2
frr10-selinux
10.4.3-3.el9_8.2
Связанные CVE
Связанные уязвимости
Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UPDATE message.
Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UPDATE message.
Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UPDATE message.
Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UPDATE message.
Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) ...