CVE-2023-47235
03.11.2023, 21:15
An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when a malformed BGP UPDATE message with an EOR is processed, because the presence of EOR does not lead to a treat-as-withdraw outcome.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| frrouting | frrouting | 𝑥 ≤ 9.0.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| frr |
| ||||||||||||||||||
| quagga |
|
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| frr |
| ||||||||||||||||||||
| frr-devel |
| ||||||||||||||||||||
| libfrr0 |
| ||||||||||||||||||||
| libfrr_pb0 |
| ||||||||||||||||||||
| libfrrcares0 |
| ||||||||||||||||||||
| libfrrfpm_pb0 |
| ||||||||||||||||||||
| libfrrgrpc_pb0 |
| ||||||||||||||||||||
| libfrrospfapiclient0 |
| ||||||||||||||||||||
| libfrrsnmp0 |
| ||||||||||||||||||||
| libfrrzmq0 |
| ||||||||||||||||||||
| libmgmt_be_nb0 |
| ||||||||||||||||||||
| libmlag_pb0 |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| frr |
| ||||||||||||
| frr-selinux |
|
References