Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
frrouting frrouting vulnerabilities and exploits
(subscribe to this query)
6.8
CVSSv2
CVE-2022-26128
A buffer overflow vulnerability exists in FRRouting up to and including 8.1.0 due to a wrong check on the input packet length in the babel_packet_examin function in babeld/message.c.
Frrouting Frrouting
6.8
CVSSv2
CVE-2022-26127
A buffer overflow vulnerability exists in FRRouting up to and including 8.1.0 due to missing a check on the input packet length in the babel_packet_examin function in babeld/message.c.
Frrouting Frrouting
6.8
CVSSv2
CVE-2022-26125
Buffer overflow vulnerabilities exist in FRRouting up to and including 8.1.0 due to wrong checks on the input packet length in isisd/isis_tlvs.c.
Frrouting Frrouting
6.8
CVSSv2
CVE-2022-26126
Buffer overflow vulnerabilities exist in FRRouting up to and including 8.1.0 due to the use of strdup with a non-zero-terminated binary string in isis_nb_notifications.c.
Frrouting Frrouting
Fedoraproject Fedora 34
Fedoraproject Fedora 35
Fedoraproject Fedora 36
6.8
CVSSv2
CVE-2022-26129
Buffer overflow vulnerabilities exist in FRRouting up to and including 8.1.0 due to wrong checks on the subtlv length in the functions, parse_hello_subtlv, parse_ihu_subtlv, and parse_update_subtlv in babeld/message.c.
Frrouting Frrouting
5
CVSSv2
CVE-2017-15865
bgpd in FRRouting (FRR) prior to 2.0.2 and 3.x prior to 3.0.2, as used in Cumulus Linux prior to 3.4.3 and other products, allows remote malicious users to obtain sensitive information via a malformed BGP UPDATE packet from a connected peer, which triggers transmission of up to a...
Frrouting Frrouting 3.0
Frrouting Frrouting
Frrouting Frrouting 3.0.1
4.3
CVSSv2
CVE-2020-12831
An issue exists in FRRouting FRR (aka Free Range Routing) up to and including 7.3.1. When using the split-config feature, the init script creates an empty config file with world-readable default permissions, leading to a possible information leak via tools/frr.in and tools/frrcom...
Linuxfoundation Free Range Routing
4
CVSSv2
CVE-2019-5892
bgpd in FRRouting FRR (aka Free Range Routing) 2.x and 3.x prior to 3.0.4, 4.x prior to 4.0.1, 5.x prior to 5.0.2, and 6.x prior to 6.0.2 (not affecting Cumulus Linux or VyOS), when ENABLE_BGP_VNC is used for Virtual Network Control, allows remote malicious users to cause a denia...
Frrouting Frrouting
Frrouting Frrouting 4.0
NA
CVE-2024-34088
In FRRouting (FRR) up to and including 9.1, it is possible for the get_edge() function in ospf_te.c in the OSPF daemon to return a NULL pointer. In cases where calling functions do not handle the returned NULL value, the OSPF daemon crashes, leading to denial of service.
NA
CVE-2024-31948
In FRRouting (FRR) up to and including 9.1, an attacker using a malformed Prefix SID attribute in a BGP UPDATE packet can cause the bgpd daemon to crash.
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-29895
inject
CVE-2023-52689
CVE-2024-5049
CVE-2024-5051
privilege escalation
physical
CVE-2023-52676
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »