Vulnerabilities > Frrouting > Frrouting > 7.2

DATE CVE VULNERABILITY TITLE RISK
2023-08-29 CVE-2023-41361 Classic Buffer Overflow vulnerability in multiple products
An issue was discovered in FRRouting FRR 9.0.
network
low complexity
frrouting debian CWE-120
critical
9.8
2023-07-24 CVE-2023-3748 Infinite Loop vulnerability in Frrouting
A flaw was found in FRRouting when parsing certain babeld unicast hello messages that are intended to be ignored.
network
low complexity
frrouting CWE-835
7.5
2023-05-03 CVE-2022-40302 Out-of-bounds Read vulnerability in multiple products
An issue was discovered in bgpd in FRRouting (FRR) through 8.4.
network
low complexity
frrouting debian CWE-125
6.5
2023-05-03 CVE-2022-40318 Out-of-bounds Read vulnerability in multiple products
An issue was discovered in bgpd in FRRouting (FRR) through 8.4.
network
low complexity
frrouting debian CWE-125
6.5
2023-05-03 CVE-2022-43681 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read exists in the BGP daemon of FRRouting FRR through 8.4.
network
low complexity
frrouting debian CWE-125
6.5
2022-09-19 CVE-2022-37032 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read in the BGP daemon of FRRouting FRR before 8.4 may lead to a segmentation fault and denial of service.
network
low complexity
frrouting debian CWE-125
critical
9.1
2022-03-03 CVE-2022-26125 Improper Validation of Specified Quantity in Input vulnerability in Frrouting
Buffer overflow vulnerabilities exist in FRRouting through 8.1.0 due to wrong checks on the input packet length in isisd/isis_tlvs.c.
local
low complexity
frrouting CWE-1284
7.8
2022-03-03 CVE-2022-26126 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Buffer overflow vulnerabilities exist in FRRouting through 8.1.0 due to the use of strdup with a non-zero-terminated binary string in isis_nb_notifications.c.
local
low complexity
frrouting fedoraproject CWE-119
7.8
2022-03-03 CVE-2022-26127 Improper Validation of Specified Quantity in Input vulnerability in Frrouting
A buffer overflow vulnerability exists in FRRouting through 8.1.0 due to missing a check on the input packet length in the babel_packet_examin function in babeld/message.c.
local
low complexity
frrouting CWE-1284
7.8
2022-03-03 CVE-2022-26128 Improper Validation of Specified Quantity in Input vulnerability in Frrouting
A buffer overflow vulnerability exists in FRRouting through 8.1.0 due to a wrong check on the input packet length in the babel_packet_examin function in babeld/message.c.
local
low complexity
frrouting CWE-1284
7.8