9.1
CVSSv3

CVE-2022-37032

Published: 19/09/2022 Updated: 08/03/2023
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An out-of-bounds read in the BGP daemon of FRRouting FRR prior to 8.4 may lead to a segmentation fault and denial of service. This occurs in bgp_capability_msg_parse in bgpd/bgp_packet.c.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

frrouting frrouting

debian debian linux 10.0

debian debian linux 11.0

Vendor Advisories

Synopsis Moderate: frr security and bug fix update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for frr is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as having ...
Synopsis Moderate: frr security, bug fix, and enhancement update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for frr is now available for Red Hat Enterprise Linux 9Red Hat Product Security has rated this upd ...
Debian Bug report logs - #1021016 frr: CVE-2022-37032 Package: src:frr; Maintainer for src:frr is David Lamparter <equinox-debian@diac24net>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Fri, 30 Sep 2022 14:51:04 UTC Severity: important Tags: security, upstream Reply or subscribe to this bug Toggle ...
Several security issues were fixed in FRR ...
An out-of-bounds read in the BGP daemon of FRRouting FRR before 84 may lead to a segmentation fault and denial of service This occurs in bgp_capability_msg_parse in bgpd/bgp_packetc For the stable distribution (bullseye), this problem has been fixed in version 751-11+deb11u1 We recommend that you upgrade your frr packages For the detailed ...
Description The MITRE CVE dictionary describes this issue as: An out-of-bounds read in the BGP daemon of FRRouting FRR before 84 may lead to a segmentation fault and denial of service This occurs in bgp_capability_msg_parse in bgpd/bgp_packetc ...