Vulnerabilities > Frrouting > High

DATE CVE VULNERABILITY TITLE RISK
2022-08-02 CVE-2022-37035 Race Condition vulnerability in Frrouting 8.3
An issue was discovered in bgpd in FRRouting (FRR) 8.3.
network
high complexity
frrouting CWE-362
8.1
2022-03-03 CVE-2022-26125 Improper Validation of Specified Quantity in Input vulnerability in Frrouting
Buffer overflow vulnerabilities exist in FRRouting through 8.1.0 due to wrong checks on the input packet length in isisd/isis_tlvs.c.
local
low complexity
frrouting CWE-1284
7.8
2022-03-03 CVE-2022-26126 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Buffer overflow vulnerabilities exist in FRRouting through 8.1.0 due to the use of strdup with a non-zero-terminated binary string in isis_nb_notifications.c.
local
low complexity
frrouting fedoraproject CWE-119
7.8
2022-03-03 CVE-2022-26127 Improper Validation of Specified Quantity in Input vulnerability in Frrouting
A buffer overflow vulnerability exists in FRRouting through 8.1.0 due to missing a check on the input packet length in the babel_packet_examin function in babeld/message.c.
local
low complexity
frrouting CWE-1284
7.8
2022-03-03 CVE-2022-26128 Improper Validation of Specified Quantity in Input vulnerability in Frrouting
A buffer overflow vulnerability exists in FRRouting through 8.1.0 due to a wrong check on the input packet length in the babel_packet_examin function in babeld/message.c.
local
low complexity
frrouting CWE-1284
7.8
2022-03-03 CVE-2022-26129 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Frrouting
Buffer overflow vulnerabilities exist in FRRouting through 8.1.0 due to wrong checks on the subtlv length in the functions, parse_hello_subtlv, parse_ihu_subtlv, and parse_update_subtlv in babeld/message.c.
local
low complexity
frrouting CWE-119
7.8