ospf_te_parse_te in ospfd/ospf_te.c in FRRouting (FRR) through 9.1 allows remote attackers to cause a denial of service (ospfd daemon crash) via a malformed OSPF LSA packet, because of an attempted access to a missing attribute field.
CVSS Details
- CVSS 3.1 Base Score: 6.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade frr | May 15, 2025 | Feb 28, 2024 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Feb 28, 2024 |
| Suse | — | Upgrade libfrr_pb0Upgrade libfrrsnmp0Upgrade libfrrfpm_pb0Upgrade libfrrospfapiclient0Upgrade libmgmt_be_nb0Upgrade libfrrzmq0Upgrade frrUpgrade frr-develUpgrade libmlag_pb0Upgrade libfrr0Upgrade libfrrcares0 | Apr 29, 2024 | Feb 28, 2024 |
| Ubuntu | — | Upgrade frr | Mar 8, 2024 | Feb 28, 2024 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jul 2, 2025 | Feb 28, 2024 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub