HomeDefectsLIN1022-5823
Fixed

LIN1022-5823 : Security Advisory - frr - CVE-2023-38406

Created: Nov 7, 2023    Updated: Feb 18, 2025
Resolved Date: Feb 12, 2024
Found In Version: 10.22.33.1
Fix Version: 10.22.33.15
Severity: Standard
Applicable for: Wind River Linux LTS 22
Component/s: Userspace

Description

bgpd/bgp_flowspec.c in FRRouting (FRR) before 8.4.3 mishandles an nlri length of zero, aka a "flowspec overflow."

CREATE(Triage):(User=admin) CVE-2023-38406 (https://nvd.nist.gov/vuln/detail/CVE-2023-38406)

CVEs