NA

CVE-2024-34088

Published: 30/04/2024 Updated: 30/04/2024

Vulnerability Summary

In FRRouting (FRR) up to and including 9.1, it is possible for the get_edge() function in ospf_te.c in the OSPF daemon to return a NULL pointer. In cases where calling functions do not handle the returned NULL value, the OSPF daemon crashes, leading to denial of service.

Vendor Advisories

Debian Bug report logs - #1070377 frr: CVE-2024-34088 Package: src:frr; Maintainer for src:frr is David Lamparter <equinox-debian@diac24net>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Sat, 4 May 2024 16:03:06 UTC Severity: important Tags: security, upstream Forwarded to githubcom/FRRouting ...