CVE-2023-31490: High severity Frrouting FRRouting vulnerability
Published May 9, 2023
·Updated
An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgpattrpsidsub() function.
Affected Software
8 affected componentsFixes available
Frrouting FRRouting=8.4.2
debian/frr
7.5.1-1.1+deb11u27.5.1-1.1+deb11u48.4.4-1.1~deb12u110.2.1-2
Debian Debian Linux=10.0
Debian Debian Linux=11.0
Debian Debian Linux=12.0
Fedoraproject Fedora=37
Fedoraproject Fedora=38
Fedoraproject Fedora=39
Remediation
Event History
May 9, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
May 14, 2023
Data Sourced
07:51 PM
SeverityAffected Software
Sep 14, 2023
Data Sourced
via Red Hat·05:14 PM
DescriptionSeverityAffected Software
Jan 12, 2024
Data Sourced
via Launchpad·12:18 AM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·04:14 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is CVE-2023-31490?
CVE-2023-31490 is a vulnerability found in Frrouting bgpd v.8.4.2 that allows a remote attacker to cause a denial of service via the bgp_attr_psid_sub() function.
2
How does CVE-2023-31490 affect Frrouting?
CVE-2023-31490 affects Frrouting bgpd version 8.4.2 and previous versions.
3
What is the severity of CVE-2023-31490?
CVE-2023-31490 has a severity rating of 7.5 (high).
4
How can I fix CVE-2023-31490?
To fix CVE-2023-31490, update Frrouting to version 8.4.2-1ubuntu1.1 or later.
5
Where can I find more information about CVE-2023-31490?
You can find more information about CVE-2023-31490 on the CVE Mitre website and the Frrouting GitHub repository.