CVE-2023-38802

FRRouting FRR 7.5.1 through 9.0 and Pica8 PICOS 4.3.3.2 allow a remote attacker to cause a denial of service via a crafted BGP update with a corrupted attribute 23 (Tunnel Encapsulation).
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:frrouting:frrouting:*:*:*:*:*:*:*:*
cpe:2.3:o:pica8:picos:4.3.3.2:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:12.0:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:*

History

22 Dec 2023, 21:18

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-29 16:15

Updated : 2024-02-05 00:01


NVD link : CVE-2023-38802

Mitre link : CVE-2023-38802

CVE.ORG link : CVE-2023-38802


JSON object : View

Products Affected

debian

  • debian_linux

pica8

  • picos

fedoraproject

  • fedora

frrouting

  • frrouting
CWE
CWE-354

Improper Validation of Integrity Check Value