Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 13

Количество 13

github логотип

GHSA-wjc3-2qjv-c8fp

3 месяца назад

FRRouting before 10.5.3 contains an integer overflow vulnerability in seven OSPF Traffic Engineering and Segment Routing TLV parser functions where a uint16_t accumulator variable truncates uint32_t values returned by the TLV_SIZE() macro, causing the loop termination condition to fail while pointer advancement continues unchecked. Attackers with an established OSPF adjacency can send a crafted LS Update packet with a malicious Type 10 or Type 11 Opaque LSA to trigger out-of-bounds memory reads and crash all affected routers in the OSPF area or autonomous system.

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2026-28532

3 месяца назад

FRRouting before 10.5.3 contains an integer overflow vulnerability in seven OSPF Traffic Engineering and Segment Routing TLV parser functions where a uint16_t accumulator variable truncates uint32_t values returned by the TLV_SIZE() macro, causing the loop termination condition to fail while pointer advancement continues unchecked. Attackers with an established OSPF adjacency can send a crafted LS Update packet with a malicious Type 10 or Type 11 Opaque LSA to trigger out-of-bounds memory reads and crash all affected routers in the OSPF area or autonomous system.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2026-28532

3 месяца назад

FRRouting before 10.5.3 contains an integer overflow vulnerability in seven OSPF Traffic Engineering and Segment Routing TLV parser functions where a uint16_t accumulator variable truncates uint32_t values returned by the TLV_SIZE() macro, causing the loop termination condition to fail while pointer advancement continues unchecked. Attackers with an established OSPF adjacency can send a crafted LS Update packet with a malicious Type 10 or Type 11 Opaque LSA to trigger out-of-bounds memory reads and crash all affected routers in the OSPF area or autonomous system.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-28532

3 месяца назад

FRRouting before 10.5.3 contains an integer overflow vulnerability in seven OSPF Traffic Engineering and Segment Routing TLV parser functions where a uint16_t accumulator variable truncates uint32_t values returned by the TLV_SIZE() macro, causing the loop termination condition to fail while pointer advancement continues unchecked. Attackers with an established OSPF adjacency can send a crafted LS Update packet with a malicious Type 10 or Type 11 Opaque LSA to trigger out-of-bounds memory reads and crash all affected routers in the OSPF area or autonomous system.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2026-28532

3 месяца назад

FRRouting < 10.5.3 Integer Overflow in OSPF TLV Parser Functions

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2026-28532

3 месяца назад

FRRouting before 10.5.3 contains an integer overflow vulnerability in ...

CVSS3: 6.5
EPSS: Низкий
redos логотип

ROS-20260625-73-0018

около 1 месяца назад

Уязвимость frr

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2026-09512

5 месяцев назад

Уязвимость анализатора трафика OSPF и маршрутизации сегментов TLV программного средства реализации сетевой маршрутизации на Unix-подобных системах FRRouting, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2644-1

около 1 месяца назад

Security update for frr

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20898-1

2 месяца назад

Security update for frr

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2457-1

около 2 месяцев назад

Security update for frr

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2455-1

около 2 месяцев назад

Security update for frr

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2454-1

около 2 месяцев назад

Security update for frr

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-wjc3-2qjv-c8fp

FRRouting before 10.5.3 contains an integer overflow vulnerability in seven OSPF Traffic Engineering and Segment Routing TLV parser functions where a uint16_t accumulator variable truncates uint32_t values returned by the TLV_SIZE() macro, causing the loop termination condition to fail while pointer advancement continues unchecked. Attackers with an established OSPF adjacency can send a crafted LS Update packet with a malicious Type 10 or Type 11 Opaque LSA to trigger out-of-bounds memory reads and crash all affected routers in the OSPF area or autonomous system.

CVSS3: 6.5
0%
Низкий
3 месяца назад
ubuntu логотип
CVE-2026-28532

FRRouting before 10.5.3 contains an integer overflow vulnerability in seven OSPF Traffic Engineering and Segment Routing TLV parser functions where a uint16_t accumulator variable truncates uint32_t values returned by the TLV_SIZE() macro, causing the loop termination condition to fail while pointer advancement continues unchecked. Attackers with an established OSPF adjacency can send a crafted LS Update packet with a malicious Type 10 or Type 11 Opaque LSA to trigger out-of-bounds memory reads and crash all affected routers in the OSPF area or autonomous system.

CVSS3: 6.5
0%
Низкий
3 месяца назад
redhat логотип
CVE-2026-28532

FRRouting before 10.5.3 contains an integer overflow vulnerability in seven OSPF Traffic Engineering and Segment Routing TLV parser functions where a uint16_t accumulator variable truncates uint32_t values returned by the TLV_SIZE() macro, causing the loop termination condition to fail while pointer advancement continues unchecked. Attackers with an established OSPF adjacency can send a crafted LS Update packet with a malicious Type 10 or Type 11 Opaque LSA to trigger out-of-bounds memory reads and crash all affected routers in the OSPF area or autonomous system.

CVSS3: 6.5
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-28532

FRRouting before 10.5.3 contains an integer overflow vulnerability in seven OSPF Traffic Engineering and Segment Routing TLV parser functions where a uint16_t accumulator variable truncates uint32_t values returned by the TLV_SIZE() macro, causing the loop termination condition to fail while pointer advancement continues unchecked. Attackers with an established OSPF adjacency can send a crafted LS Update packet with a malicious Type 10 or Type 11 Opaque LSA to trigger out-of-bounds memory reads and crash all affected routers in the OSPF area or autonomous system.

CVSS3: 6.5
0%
Низкий
3 месяца назад
msrc логотип
CVE-2026-28532

FRRouting < 10.5.3 Integer Overflow in OSPF TLV Parser Functions

CVSS3: 6.5
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-28532

FRRouting before 10.5.3 contains an integer overflow vulnerability in ...

CVSS3: 6.5
0%
Низкий
3 месяца назад
redos логотип
ROS-20260625-73-0018

Уязвимость frr

CVSS3: 6.5
0%
Низкий
около 1 месяца назад
fstec логотип
BDU:2026-09512

Уязвимость анализатора трафика OSPF и маршрутизации сегментов TLV программного средства реализации сетевой маршрутизации на Unix-подобных системах FRRouting, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
0%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:2644-1

Security update for frr

около 1 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20898-1

Security update for frr

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2457-1

Security update for frr

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:2455-1

Security update for frr

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:2454-1

Security update for frr

около 2 месяцев назад

Уязвимостей на страницу

exploitDog - Комплексное решение для обнаружения, оценки и устранения уязвимостей.