CVE-2023-38802
29.08.2023, 16:15
FRRouting FRR 7.5.1 through 9.0 and Pica8 PICOS 4.3.3.2 allow a remote attacker to cause a denial of service via a crafted BGP update with a corrupted attribute 23 (Tunnel Encapsulation).Enginsight
| Vendor | Product | Version |
|---|---|---|
| frrouting | frrouting | 7.5.1 ≤ 𝑥 ≤ 9.0 |
| pica8 | picos | 4.3.3.2 |
| debian | debian_linux | 10.0 |
| debian | debian_linux | 11.0 |
| debian | debian_linux | 12.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| frr |
| ||||||||||||||||||
| quagga |
|
References