First published: Tue Aug 29 2023(Updated: )
An issue was discovered in FRRouting FRR 9.0. bgpd/bgp_open.c does not check for an overly large length of the rcv software version.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Frrouting Frrouting | <=9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-41361 is critical with a score of 9.8.
CVE-2023-41361 is an issue discovered in FRRouting FRR 9.0 where bgpd/bgp_open.c does not check for an overly large length of the rcv software version.
The affected software is FRRouting FRR 9.0.
To fix CVE-2023-41361, update FRRouting to the latest version.
For more information about CVE-2023-41361, you can visit the following references: [Reference 1](https://github.com/FRRouting/frr/pull/14241) and [Reference 2](https://lists.debian.org/debian-lts-announce/2023/09/msg00020.html).