[WID-SEC-2024-0806] FRRouting Project FRRouting: Schwachstellen ermöglichen Denial of Service CVSS Base Score 7.5 (hoch) CVSS Temporal Score 6.5 (mittel) Remoteangriff ja Datum 07.04.2024 Stand UPDATE 05.06.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux UNIX Produktbeschreibung FRRouting (FRR) ist eine freie und quelloffene Internet-Routing-Protokollsuite für Linux- und Unix-Plattformen. Es implementiert BGP, OSPF, RIP, IS-IS, PIM, LDP, BFD, Babel, PBR, OpenFabric und VRRP, mit Alpha-Unterstützung für EIGRP und NHRP. Produkte UPDATE 31.07.2024 Fedora Linux UPDATE 28.05.2024 Ubuntu Linux UPDATE 28.04.2024 Debian Linux SUSE Linux 07.04.2024 FRRouting Project FRRouting <=9.1 Angriff Angriff Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in FRRouting Project FRRouting ausnutzen, um einen Denial of Service Angriff durchzuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben
Multiple vulnerabilities in FRRouting (FRR) allow a remote, anonymous attacker to cause a Denial of Service. The CVSS Base Score for these issues is 7.5 (High). Affected versions include FRRouting Project FRRouting up to and including version 9.1. Mitigations are available, and major Linux distributions including Fedora, Ubuntu, Debian, and SUSE have released updates.