CVE-2023-41361: Critical severity Frrouting FRRouting vulnerability
Published Aug 29, 2023
·Updated
An issue was discovered in FRRouting FRR 9.0. bgpd/bgpopen.c does not check for an overly large length of the rcv software version.
Affected Software
1 affected component
Frrouting FRRouting<=9.0
Remediation
Patch Available
Event History
Aug 29, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Jun 30, 2024
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-41361?
The severity of CVE-2023-41361 is critical with a score of 9.8.
2
What is the description of CVE-2023-41361?
CVE-2023-41361 is an issue discovered in FRRouting FRR 9.0 where bgpd/bgp_open.c does not check for an overly large length of the rcv software version.
3
How does CVE-2023-41361 affect software?
The affected software is FRRouting FRR 9.0.
4
How can I fix CVE-2023-41361?
To fix CVE-2023-41361, update FRRouting to the latest version.
5
Is there any additional information about CVE-2023-41361?
For more information about CVE-2023-41361, you can visit the following references: [Reference 1](https://github.com/FRRouting/frr/pull/14241) and [Reference 2](https://lists.debian.org/debian-lts-announce/2023/09/msg00020.html).