← Back to CVE Index
CVE-2022-26128
Disclosed 2022-03-03
Description
A buffer overflow vulnerability exists in FRRouting through 8.1.0 due to a wrong check on the input packet length in the babel_packet_examin function in babeld/message.c.
Weakness Enumeration
| CWE-ID | Name |
|---|---|
| CWE-119 | Improper Restriction of Operations within the Bounds of a Memory Buffer |
Affected FRR Versions
- through 8.1.0
Versions prior to 8.4 are end-of-life and no longer receive security updates.
References
| URL | Source |
|---|---|
| https://github.com/FRRouting/frr/issues/10502 | GitHub |
| https://lists.debian.org/debian-lts-announce/2024/04/msg00019.html | Debian |
Git Fixes
Raw Data
- CVE-2022-26128.cve.json — CVE record (JSON)
- CVE-2022-26128.frr.json — FRR-specific data (JSON)