Vulnerabilities > Frrouting > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-10-26 CVE-2023-46752 Unspecified vulnerability in Frrouting
An issue was discovered in FRRouting FRR through 9.0.1.
network
high complexity
frrouting
5.9
2023-10-26 CVE-2023-46753 Unspecified vulnerability in Frrouting
An issue was discovered in FRRouting FRR through 9.0.1.
network
high complexity
frrouting
5.9
2023-05-09 CVE-2023-31489 An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_capability_llgr() function.
local
low complexity
frrouting fedoraproject
5.5
2023-05-03 CVE-2022-40302 Out-of-bounds Read vulnerability in multiple products
An issue was discovered in bgpd in FRRouting (FRR) through 8.4.
network
low complexity
frrouting debian CWE-125
6.5
2023-05-03 CVE-2022-40318 Out-of-bounds Read vulnerability in multiple products
An issue was discovered in bgpd in FRRouting (FRR) through 8.4.
network
low complexity
frrouting debian CWE-125
6.5
2023-05-03 CVE-2022-43681 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read exists in the BGP daemon of FRRouting FRR through 8.4.
network
low complexity
frrouting debian CWE-125
6.5
2019-01-10 CVE-2019-5892 Interpretation Conflict vulnerability in Frrouting
bgpd in FRRouting FRR (aka Free Range Routing) 2.x and 3.x before 3.0.4, 4.x before 4.0.1, 5.x before 5.0.2, and 6.x before 6.0.2 (not affecting Cumulus Linux or VyOS), when ENABLE_BGP_VNC is used for Virtual Network Control, allows remote attackers to cause a denial of service (peering session flap) via attribute 255 in a BGP UPDATE packet.
network
low complexity
frrouting CWE-436
4.0
2017-11-08 CVE-2017-15865 Information Exposure vulnerability in Frrouting
bgpd in FRRouting (FRR) before 2.0.2 and 3.x before 3.0.2, as used in Cumulus Linux before 3.4.3 and other products, allows remote attackers to obtain sensitive information via a malformed BGP UPDATE packet from a connected peer, which triggers transmission of up to a few thousand unintended bytes because of a mishandled attribute length, aka RN-690 (CM-18492).
network
low complexity
frrouting cumulusnetworks CWE-200
5.0