Vulnerabilities > CVE-2023-38283 - Improper Check for Unusual or Exceptional Conditions vulnerability in Openbgpd

047910
CVSS 5.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
LOW
Availability impact
NONE
network
low complexity
openbgpd
CWE-754

Summary

In OpenBGPD before 8.1, incorrect handling of BGP update data (length of path attributes) set by a potentially distant remote actor may cause the system to incorrectly reset a session. This is fixed in OpenBSD 7.3 errata 006.

Vulnerable Configurations

Part Description Count
Application
Openbgpd
1
OS
Openbsd
7