CVE-2025-43970
21.04.2025, 01:15
An issue was discovered in GoBGP before 3.35.0. pkg/packet/mrt/mrt.go does not properly check the input length, e.g., by ensuring that there are 12 bytes or 36 bytes (depending on the address family).Enginsight
Vendor | Product | Version |
---|---|---|
osrg | gobgp | 𝑥 < 3.35.0 |
𝑥
= Vulnerable software versions

Debian Releases