Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2026:0665-1

Опубликовано: 26 фев. 2026
Источник: suse-cvrf

Описание

Security update for frr

This update for frr fixes the following issues:

  • CVE-2025-61099: Fixed a NULL pointer dereference, which may lead to a DoS vulnerability. (bsc#1252838)
  • CVE-2025-61100: Fixed a NULL pointer dereference, which may lead to a DoS vulnerability. (bsc#1252829)
  • CVE-2025-61101: Fixed a NULL pointer dereference, which may lead to a DoS vulnerability. (bsc#1252833)
  • CVE-2025-61102: Fixed a NULL pointer dereference, which may lead to a DoS vulnerability. (bsc#1252835)
  • CVE-2025-61103: Fixed a NULL pointer dereference, which may lead to a DoS vulnerability. (bsc#1252810)
  • CVE-2025-61104: Fixed a NULL pointer dereference, which may lead to a DoS vulnerability. (bsc#1252811)
  • CVE-2025-61105: Fixed a NULL pointer dereference, which may lead to a DoS vulnerability. (bsc#1252761)
  • CVE-2025-61106: Fixed a NULL pointer dereference, which may lead to a DoS vulnerability. (bsc#1252812)
  • CVE-2025-61107: Fixed a NULL pointer dereference, which may lead to a DoS vulnerability. (bsc#1252813)

Список пакетов

SUSE Linux Enterprise Module for Server Applications 15 SP7
frr-10.2.1-150700.3.5.1
frr-devel-10.2.1-150700.3.5.1
libfrr0-10.2.1-150700.3.5.1
libfrr_pb0-10.2.1-150700.3.5.1
libfrrcares0-10.2.1-150700.3.5.1
libfrrfpm_pb0-10.2.1-150700.3.5.1
libfrrospfapiclient0-10.2.1-150700.3.5.1
libfrrsnmp0-10.2.1-150700.3.5.1
libfrrzmq0-10.2.1-150700.3.5.1
libmgmt_be_nb0-10.2.1-150700.3.5.1

Описание

FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the opaque_info_detail function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LS Update packet.


Затронутые продукты
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-devel-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr0-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr_pb0-10.2.1-150700.3.5.1

Ссылки

Описание

FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the ospf_opaque_lsa_dump function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) under specific malformed LSA conditions.


Затронутые продукты
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-devel-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr0-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr_pb0-10.2.1-150700.3.5.1

Ссылки

Описание

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_rmt_itf_addr function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.


Затронутые продукты
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-devel-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr0-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr_pb0-10.2.1-150700.3.5.1

Ссылки

Описание

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.


Затронутые продукты
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-devel-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr0-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr_pb0-10.2.1-150700.3.5.1

Ссылки

Описание

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_lan_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.


Затронутые продукты
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-devel-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr0-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr_pb0-10.2.1-150700.3.5.1

Ссылки

Описание

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_unknown_tlv function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.


Затронутые продукты
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-devel-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr0-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr_pb0-10.2.1-150700.3.5.1

Ссылки

Описание

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_link_info function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.


Затронутые продукты
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-devel-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr0-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr_pb0-10.2.1-150700.3.5.1

Ссылки

Описание

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.


Затронутые продукты
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-devel-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr0-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr_pb0-10.2.1-150700.3.5.1

Ссылки

Описание

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LSA Update packet.


Затронутые продукты
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:frr-devel-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr0-10.2.1-150700.3.5.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:libfrr_pb0-10.2.1-150700.3.5.1

Ссылки
Уязвимость SUSE-SU-2026:0665-1