CVE-2024-44070

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
19/08/2024
Last modified:
04/11/2025

Description

An issue was discovered in FRRouting (FRR) through 10.1. bgp_attr_encap in bgpd/bgp_attr.c does not check the actual remaining stream length before taking the TLV value.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:frrouting:frrouting:*:*:*:*:*:*:*:* 10.1 (including)
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*