CVE-2026-37458
EUVD-2026-2697704.05.2026, 16:16
Missing input validation in the MP_REACH_NLRI component of FRRouting (FRR) stable/10.0 to stable/10.6 allows authenticated attackers to cause a Denial of Service (DoS) via supplying a crafted UPDATE message.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| frrouting | frrouting | 10.0 ≤ 𝑥 ≤ 10.6.0 |
𝑥
= Vulnerable software versions
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| frr |
| ||||||||||||||
| frr-devel |
| ||||||||||||||
| libfrr0 |
| ||||||||||||||
| libfrr_pb0 |
| ||||||||||||||
| libfrrcares0 |
| ||||||||||||||
| libfrrfpm_pb0 |
| ||||||||||||||
| libfrrospfapiclient0 |
| ||||||||||||||
| libfrrsnmp0 |
| ||||||||||||||
| libfrrzmq0 |
| ||||||||||||||
| libmgmt_be_nb0 |
| ||||||||||||||
| libmlag_pb0 |
|
Common Weakness Enumeration
Vulnerability Media Exposure