CVE-2024-34088

EUVD-2024-35147
In FRRouting (FRR) through 9.1, it is possible for the get_edge() function in ospf_te.c in the OSPF daemon to return a NULL pointer. In cases where calling functions do not handle the returned NULL value, the OSPF daemon crashes, leading to denial of service.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CISA-ADPADP
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 19%
Affected Products (NVD)
VendorProductVersion
frroutingfrrouting
𝑥
≤ 9.1
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
frr
bookworm
vulnerable
bookworm (security)
vulnerable
bullseye
7.5.1-1.1+deb11u2
not-affected
bullseye (security)
7.5.1-1.1+deb11u4
fixed
buster
not-affected
forky
10.5.0-1
fixed
sid
10.5.0-1
fixed
trixie
10.3-3
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
frr
focal
not-affected
jammy
Fixed 8.1-1ubuntu1.10
released
mantic
Fixed 8.4.4-1.1ubuntu1.4
released
noble
Fixed 8.4.4-1.1ubuntu6.1
released
quagga
bionic
not-affected
focal
not-affected
jammy
dne
mantic
dne
noble
dne
xenial
not-affected