Описание
A vulnerability was determined in osrg GoBGP up to 4.3.0. Affected by this vulnerability is the function parseRibEntry of the file pkg/packet/mrt/mrt.go. Executing a manipulation can lead to integer underflow. It is possible to launch the attack remotely. Upgrading to version 4.4.0 addresses this issue. This patch is called 76d911046344a3923cbe573364197aa081944592. It is suggested to upgrade the affected component.
A flaw was found in osrg GoBGP. A remote attacker can exploit this vulnerability by executing a manipulation that leads to an integer underflow in the parseRibEntry function. This integer underflow can result in low impacts to the system's confidentiality, integrity, and availability.
Отчет
This flaw is rated as Important. A remote unauthenticated attacker whose is able to reach the application consuming the GoBGP library to handle MRT information can trigger the integer underflow vulnerability by sending a maliciously crafted packet to the application. The value resulted from the underflow is further used to try to read information from the memory buffer holding the packet itself resulting in a out-of-bounds read. As the Go language is considered memory safe, in this implementation the attacker won't be able to read any unintended data as the Go runtime will case the application to panic meaning there's no integrity or confidentiality impact as consequence of a successful attacker. However when this flaw is exploited, due to the same runtime protection leading the application to panic, a denial-of-service (DoS) is achieved for all users trying to access the application, result in a high impact to the availability aspect.
Меры по смягчению последствий
To mitigate this issue, restrict network access to systems running GoBGP to only trusted BGP peers. Configure firewall rules to limit inbound connections to the BGP port (TCP 179) from known and authorized sources. This will reduce the attack surface by preventing arbitrary remote attackers from sending malicious BGP messages. Any changes to firewall rules or network configurations may require a service reload or restart to take effect, which could temporarily disrupt network services.
Ссылки на источники
Дополнительная информация
Статус:
7.5 High
CVSS3
Связанные уязвимости
A vulnerability was determined in osrg GoBGP up to 4.3.0. Affected by this vulnerability is the function parseRibEntry of the file pkg/packet/mrt/mrt.go. Executing a manipulation can lead to integer underflow. It is possible to launch the attack remotely. Upgrading to version 4.4.0 addresses this issue. This patch is called 76d911046344a3923cbe573364197aa081944592. It is suggested to upgrade the affected component.
A vulnerability was determined in osrg GoBGP up to 4.3.0. Affected by this vulnerability is the function parseRibEntry of the file pkg/packet/mrt/mrt.go. Executing a manipulation can lead to integer underflow. It is possible to launch the attack remotely. Upgrading to version 4.4.0 addresses this issue. This patch is called 76d911046344a3923cbe573364197aa081944592. It is suggested to upgrade the affected component.
A vulnerability was determined in osrg GoBGP up to 4.3.0. Affected by ...
7.5 High
CVSS3