5.9
CVSSv3

CVE-2023-46753

Published: 26/10/2023 Updated: 28/04/2024
CVSS v3 Base Score: 5.9 | Impact Score: 3.6 | Exploitability Score: 2.2
VMScore: 0

Vulnerability Summary

An issue exists in FRRouting FRR up to and including 9.0.1. A crash can occur for a crafted BGP UPDATE message without mandatory attributes, e.g., one with only an unknown transit attribute.

Vulnerable Product Search on Vulmon Subscribe to Product

frrouting frrouting

Vendor Advisories

Debian Bug report logs - #1055852 frr: CVE-2023-38407 CVE-2023-41361 CVE-2023-46752 CVE-2023-46753 CVE-2023-47234 CVE-2023-47235 Package: src:frr; Maintainer for src:frr is David Lamparter <equinox-debian@diac24net>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Sun, 12 Nov 2023 19:03:01 UTC Severity: grave ...
Description<!---->A flaw was found in FRRouting A crash can occur for a crafted BGP UPDATE message without mandatory attributes (for example, one with only an unknown transit attribute)A flaw was found in FRRouting A crash can occur for a crafted BGP UPDATE message without mandatory attributes (for example, one with only an unknown transit attri ...