vulnerability

Red Hat: CVE-2023-38802: Incorrect handling of a error in parsing of an invalid section of a BGP update can de-peer a router (Multiple Advisories)

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Published
2023-08-29
Added
2023-09-19
Modified
2025-01-28

Description

FRRouting FRR 7.5.1 through 9.0 and Pica8 PICOS 4.3.3.2 allow a remote attacker to cause a denial of service via a crafted BGP update with a corrupted attribute 23 (Tunnel Encapsulation).

Solution(s)

redhat-upgrade-frrredhat-upgrade-frr-debuginforedhat-upgrade-frr-debugsourceredhat-upgrade-frr-selinux
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.