First published: Thu Aug 31 2023(Updated: )
Ben Cartwright-Cox discovered that FRR did not handle RFC 7606 attributes properly. A remote attacker could possibly use this to cause denial of service.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/frr | <8.4.2-1ubuntu1.3 | 8.4.2-1ubuntu1.3 |
Ubuntu | =23.04 | |
All of | ||
ubuntu/frr | <8.1-1ubuntu1.5 | 8.1-1ubuntu1.5 |
Ubuntu | =22.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability mentioned in USN-6323-1 is an issue in FRR that allows a remote attacker to cause a denial of service.
The vulnerability in USN-6323-1 could potentially allow a remote attacker to disrupt the normal functioning of FRR, leading to service unavailability.
The vulnerability in USN-6323-1 affects FRR versions 8.4.2-1ubuntu1.3 and 8.1-1ubuntu1.5.
To fix the vulnerability in USN-6323-1, you should update FRR to version 8.4.2-1ubuntu1.3 or 8.1-1ubuntu1.5, depending on the version you are currently using.
You can find more information about the vulnerability in USN-6323-1 on the Ubuntu Security Notices website and the Ubuntu Launchpad page for the FRR package.