CVE-2023-46753: Medium severity Frrouting FRRouting vulnerability
An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur for a crafted BGP UPDATE message without mandatory attributes e.g. one with only an unknown transit attribute.
Other sources
An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur for a crafted BGP UPDATE message without mandatory attributes, e.g., one with only an unknown transit attribute.
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2023-46753?
CVE-2023-46753 is a vulnerability in FRRouting FRR through version 9.0.1 that can result in a crash when receiving a crafted BGP UPDATE message without mandatory attributes.
How severe is CVE-2023-46753?
CVE-2023-46753 has a severity level of high with a CVSS score of 7.5.
How does CVE-2023-46753 affect FRRouting?
CVE-2023-46753 affects FRRouting versions up to and including 9.0.1.
What is the fix for CVE-2023-46753?
There is no known fix for CVE-2023-46753 at the moment. It is recommended to monitor the project's official website for updates or patches.
Where can I find more information about CVE-2023-46753?
You can find more information about CVE-2023-46753 on the GitHub page for FRRouting's pull request #14645.