← Back to CVE Index
CVE-2022-26126
Disclosed 2022-03-03
Description
Buffer overflow vulnerabilities exist in FRRouting through 8.1.0 due to the use of strdup with a non-zero-terminated binary string in isis_nb_notifications.c.
Weakness Enumeration
| CWE-ID | Name |
|---|---|
| CWE-119 | Improper Restriction of Operations within the Bounds of a Memory Buffer |
Affected FRR Versions
- through 8.1.0
Versions prior to 8.4 are end-of-life and no longer receive security updates.
References
Git Fixes
Raw Data
- CVE-2022-26126.cve.json — CVE record (JSON)
- CVE-2022-26126.frr.json — FRR-specific data (JSON)