[WID-SEC-2024-1009] FRRouting Project FRRouting: Schwachstelle ermöglicht Denial of Service CVSS Base Score 7.5 (hoch) CVSS Temporal Score 6.5 (mittel) Remoteangriff ja Datum 01.05.2024 Stand UPDATE 05.06.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux Sonstiges Produktbeschreibung FRRouting (FRR) ist eine freie und quelloffene Internet-Routing-Protokollsuite für Linux- und Unix-Plattformen. Es implementiert BGP, OSPF, RIP, IS-IS, PIM, LDP, BFD, Babel, PBR, OpenFabric und VRRP, mit Alpha-Unterstützung für EIGRP und NHRP. Produkte UPDATE 04.06.2026 Debian Linux UPDATE 10.06.2024 SUSE Linux UPDATE 28.05.2024 Ubuntu Linux 01.05.2024 FRRouting Project FRRouting <=9.1 Angriff Angriff Ein entfernter, anonymer Angreifer kann eine Schwachstelle in FRRouting Project FRRouting ausnutzen, um einen Denial of Service Angriff durchzuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben
A remote, anonymous attacker can exploit a vulnerability in FRRouting to cause a denial-of-service condition. The vulnerability has a CVSS base score of 7.5 (High) and affects FRRouting versions up to and including 9.1. Patches and mitigations have been provided by major Linux distributions including Debian, SUSE, and Ubuntu.